Vulnerability Description
Opera allows remote attackers to cause a denial of service (invalid memory reference and application crash) via a web page or HTML email that contains a TBODY tag with a large COL SPAN value, as demonstrated by mangleme.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opera | Opera Browser | <= 7.54 |
References
- http://lcamtuf.coredump.cx/mangleme/gallery/Broken LinkVendor Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2004-October/027709.htmlBroken LinkExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=109811406620511&w=2Mailing List
- http://www.securityfocus.com/bid/11441Broken LinkPatchThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17806Third Party AdvisoryVDB Entry
- http://lcamtuf.coredump.cx/mangleme/gallery/Broken LinkVendor Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2004-October/027709.htmlBroken LinkExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=109811406620511&w=2Mailing List
- http://www.securityfocus.com/bid/11441Broken LinkPatchThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17806Third Party AdvisoryVDB Entry
FAQ
What is CVE-2004-1615?
CVE-2004-1615 is a vulnerability with a CVSS score of 2.6 (LOW). Opera allows remote attackers to cause a denial of service (invalid memory reference and application crash) via a web page or HTML email that contains a TBODY tag with a large COL SPAN value, as demon...
How severe is CVE-2004-1615?
CVE-2004-1615 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-1615?
Check the references section above for vendor advisories and patch information. Affected products include: Opera Opera Browser.