CVE-2008-1762

Opera <9.27 - RCE

Title source: llm

Description

Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted scaled image pattern in an HTML CANVAS element, which triggers memory corruption.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Michal Zalewski · htmldoslinux
https://www.exploit-db.com/exploits/31594

Scores

EPSS 0.2507
EPSS Percentile 96.2%

Details

CWE
CWE-399
Status published
Products (30)
opera/opera_browser 5.0 (8 CPE variants)
opera/opera_browser 5.02
opera/opera_browser 5.10
opera/opera_browser 5.11
opera/opera_browser 5.12
opera/opera_browser 6.0 (6 CPE variants)
opera/opera_browser 6.1 (2 CPE variants)
opera/opera_browser 6.01
opera/opera_browser 6.02
opera/opera_browser 6.03
... and 20 more
Published Apr 12, 2008
Tracked Since Feb 18, 2026