This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Opera updates

21 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

Opera v12.11 released
- https://secunia.com/advisories/51331/
Release Date: 2012-11-20
Criticality level: Highly critical
Impact: Exposure of sensitive information, System access
Where: From remote
… weakness and the vulnerability are reported in versions prior to 12.11.
Solution: Update to version 12.11.
Original Advisory
http://www.opera.com/docs/changelogs/unified/1211/
Release date: 2012-11-20 - Opera 12.11 is a recommended upgrade offering security and stability enhancements…
http://www.opera.com/support/kb/view/1036/
http://www.opera.com/support/kb/view/1037/

> http://www.opera.com/browser/download/?custom=yes

> http://help.opera.com/Windows/12.10/en/autoupdate.html

:ph34r:
FYI…

Opera v12.12 released
- http://www.opera.com/docs/changelogs/unified/1212/
2012-12-18 - "Opera 12.12 is a recommended upgrade offering security and stability enhancements…"

Security:
- Fixed an issue where malformed GIF images could allow execution of arbitrary code; see our advisory:
http://www.opera.com/support/kb/view/1038/
- Fixed an issue where repeated attempts to access a target site could trigger address field spoofing… see our advisory:
http://www.opera.com/support/kb/view/1040/
- UNIX-only: Fixed an issue where private data could be disclosed to other computer users, or be modified by them… see our advisory:
http://www.opera.com/support/kb/view/1039/

- https://secunia.com/advisories/51462/
Last Update: 2012-12-18
Criticality level: Highly critical
Impact: Spoofing, Privilege escalation, System access
Where: From remote
Solution: Update to version 12.12.
___

- http://h-online.com/-1771993
19 Dec 2012

:ph34r:
FYI…

Opera v12.13 released
- https://secunia.com/advisories/52005/
Release Date: 2013-01-30
Criticality level: Highly critical
Impact: Unknown, System access
Where: From remote
… vulnerabilities are reported in versions prior to 12.13.
Solution: Update to version 12.13.
Original Advisory: http://www.opera.com/docs/changelogs/unified/1213/
"… a recommended upgrade offering security and stability enhancements…"

> http://www.opera.com/browser/download/?custom=yes

> http://help.opera.com/Windows/12.10/en/autoupdate.html
___

- http://h-online.com/-1794826
31 Jan 2013

:ph34r:
FYI…

Opera v12.14 released
- http://www.opera.com/docs/changelogs/unified/1214/
Release date: 2013-02-05
Opera 12.14 is a recommended upgrade offering security and stability enhancements.
Fixes and Stability Enhancements since Opera 12.13: General and User Interface: Update addresses a re-occuring crash, allowing users to update two or more extensions at one time.

> http://www.opera.com/browser/download/?custom=yes

> http://help.opera.com/Windows/12.10/en/autoupdate.html
___

Opera moves to WebKit
- http://my.opera.com/haavard/blog/2013/02/13/webkit
February 13, 2013

:ph34r:
FYI…

Opera v12.15 released
- https://secunia.com/advisories/52859/
Release Date: 2013-04-04
Criticality level: Moderately critical
Impact: Unknown, Exposure of sensitive information
Where: From remote
… weakness and a vulnerability are reported in version 12.14. Prior versions may also be affected.
Solution: Update to version 12.15.
Original Advisory: Opera:
http://www.opera.com/docs/changelogs/unified/1215/
"Release date: 2013-04-04: Opera 12.15 is a recommended upgrade offering security and stability enhancements…"

- http://www.opera.com/security/advisory/1046

- http://www.opera.com/security/advisory/1047
___

> http://www.opera.com/browser/download/?custom=yes

> http://help.opera.com/Windows/12.10/en/autoupdate.html

:ph34r:
FYI…

Opera users received malicious update
- http://h-online.com/-1897805
27 June 2013 - "In a post on the browser vendor's security blog*, Opera employee Sigbjørn Vik has informed users of a security breach at the company during which unknown attackers have gotten control of an expired code signing certificate. The attackers used that certificate to sign malware and deliver it to thousands of Opera users through the browser's automatic updating function. Opera has advised users to update to a new version of its browser as soon as it is released. The attackers had accessed Opera's corporate network on 19 June between 1:00 am and 1:36 am CET. The company says that their systems have been cleaned and that there is no evidence of user data having been copied. Opera is working with relevant authorities to investigate the attack. Users who had received the malicious update might have installed it automatically and subsequently got infected by the included trojan. A scan with the VirusTotal service** reveals that more than half of the anti-virus engines used by the scanner can currently detect the trojan. Opera says it will soon release an updated version of their browser which will use a new code signing certificate "to be on the safe side"."
* http://my.opera.com/securitygroup/blog/201…tructure-attack
June 26, 2013

** https://www.virustotal.com/en/file/8ecbca0d…94b43/analysis/
___

Opera 12.16 released
- http://www.opera.com/docs/changelogs/unified/1216/
2013-07-04 - "Opera 12.16 is a recommended upgrade offering security and stability enhancements."

- http://www.opera.com/security/advisory/1048
July 4, 2013 - "Opera has released Opera Desktop 12.16 signed with a new certificate…"

> http://www.opera.com/browser/download/?custom=yes

> http://help.opera.com/Windows/12.10/en/autoupdate.html

:ph34r: :ph34r:
FYI…

Opera v16.00 released
- https://secunia.com/advisories/54514/
Release Date: 2013-08-28
Criticality: Moderately Critical
Where: From remote
Impact: Unknown
… vulnerabilities are caused due to a bundled vulnerable version of Chromium. No further information is currently available.
The vulnerabilities are reported in versions prior to 16.00.
Solution: Upgrade to version 16.00.
Original Advisory: Opera:
- http://www.opera.com/docs/changelogs/unified/1600/
Release date: 2013-08-27 - "Opera 16 includes updates to the latest Chromium release, version 29…"

:ph34r: :ph34r:

FYI…

Opera 19.00 released
- https://secunia.com/advisories/56649/
Release Date: 2014-01-28
Criticality: Moderately Critical
Where: From remote
Impact: Unknown
CVE Reference(s): No CVE references.
… vulnerabilities are reported in versions prior to 19.00.
Solution: Upgrade to version 19.00.
Original Advisory: Opera:
http://www.opera.com/docs/changelogs/unified/1900/
2014-01-28 - "… includes updates to the latest Chromium release, version 32…"
 

:ph34r:

FYI…

Opera 20 released
- https://secunia.com/advisories/57242/
Release Date: 2014-03-05
Criticality: Moderately Critical
Where: From remote
Impact: Unknown…
CVE Reference: No CVE references…
… vulnerabilities are caused due to a bundled vulnerable version of Chromium…
… vulnerabilities are reported in versions prior to 20.00.
Solution: Upgrade to version 20.00.
Original Advisory:
- http://www.opera.com/docs/changelogs/unified/2000/
"… Opera 20 includes updates to the latest Chromium release, version 33…"
 

[image unavailable: xph34r.png.pagespeed.ic.GOH20nhrx_.png]

FYI…

Opera 22 released
- https://secunia.com/advisories/59006/
Release Date: 2014-06-03
Criticality: Moderately Critical
Where: From remote
Impact: Unknown
… vulnerabilities are reported in versions prior to 22.
Solution: Upgrade to version 22.
Original Advisory:
- http://www.opera.com/docs/changelogs/unified/2200/
Release date: 2014-06-03: "…  includes updates to the latest Chromium/Blink release, version 35…"
___

- http://www.securityfocus.com/bid/57121/info
Updated: Jun 16 2014
Credit: The vendor reported this issue…
Opera Web Browser prior to 12.10 SSL Certificate Validation Security Weakness…

- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-6461 - 5.0

Current version: Opera 22: http://www.opera.com/docs/changelogs/unified/2200/
 

:ph34r: