CVE-2012-6466

Severity
5.0MEDIUM
EPSS
0.2%
top 54.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 2
Latest updateMay 17

Description

Opera before 12.10 does not properly handle incorrect size data in a WebP image, which allows remote attackers to obtain potentially sensitive information from process memory by using a crafted image as the fill pattern for a canvas.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDopera/opera_browser12.10+106

🔴Vulnerability Details

2
GHSA
GHSA-xfj5-6f3c-c22p: Opera before 122022-05-17
CVEList
CVE-2012-6466: Opera before 122013-01-02