CVE-2013-1618

Opera Browser < 12.12 - Cryptographic Issue

Title source: rule

Description

The TLS implementation in Opera before 12.13 does not properly consider timing side-channel attacks on a MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, a related issue to CVE-2013-0169.

Scores

EPSS 0.0076
EPSS Percentile 73.1%

Classification

CWE
CWE-310
Status draft

Affected Products (8)

opera/opera_browser < 12.12
opera/opera_browser
opera/opera_browser
opera/opera_browser
opera/opera_browser
opera/opera_browser
opera/opera_browser
opera/opera_browser

Timeline

Published Feb 08, 2013
Tracked Since Feb 18, 2026