New User, Welcome!     Login

Panda Internet Security

[UPDATE] NSOADV-2010-001: Panda Security Local Privilege Escalation

  Affected Products:      (Self tested)
                          -Panda Security for Business 4.04.10
                          -Panda Security for Business with Exchange
                           4.04.10
                          -Panda Security for Enterprise 4.04.10
                          -Panda Internet Security 2010 (15.01.00)
                          -Panda Global Protection 2010 (3.01.00)
                          -Panda Antivirus Pro 2010 (9.01.00)
                          -Panda Antivirus for Netbooks (9.01.00)

                          (Provided by Panda)

NSOADV-2010-001: Panda Security Local Privilege Escalation

  Affected Products:      (Self tested)
                          -Panda Security for Business 4.04.10
                          -Panda Security for Business with Exchange
                           4.04.10
                          -Panda Security for Enterprise 4.04.10
                          -Panda Internet Security 2010 (15.01.00)
                          -Panda Global Protection 2010 (3.01.00)
                          -Panda Antivirus Pro 2010 (9.01.00)
                          -Panda Antivirus for Netbooks (9.01.00)

                          (Provided by Panda)

Panda Security Software Local Privilege Escalation

Source: http://www.pandasecurity.com

VULNERABLE PRODUCTS

Panda Antivirus Pro 2010 (9.01.00)
Panda Internet Security 2010 (15.01.00)
Panda Total Protection 2010 (3.01.00)

Prior versions may also be affected.

DETAILS

[TZO-24-2009] Panda generic evasion (CAB)

************************************************************************

Release mode: Coordinated but limited disclosure.
Ref         : TZO-24-2009 - Panda generic evasion (CAB)
WWW         : http://blog.zoller.lu/2009/04/why-are-there-two-panda-advisories.html
Vendor      : http://www.pandasecurity.com
Status      : Patched (Through hotfix and automatic update)
CVE         : none provided
OSVDB listing: No [1]
Credit :
http://www.pandasecurity.com/homeusers/support/card?id=80060&idIdioma=2

[TZO-25-2009] Panda generic evasion (TAR)

************************************************************************

Release mode: Coordinated but limited disclosure.
Ref         : TZO-25-2009 - Panda generic evasion (TAR)
WWW         : http://blog.zoller.lu/2009/04/advisory-panda-generic-evasion-tar.html
Vendor      : http://www.pandasecurity.com
Status      : Patched (Through hotfix and automatic update)
CVE         : none provided
OSVDB listing: No [1]
Credit :
http://www.pandasecurity.com/homeusers/support/card?id=80060&idIdioma=2

Re: {PRL} Multiple Panda Security Products Local Privilege Escalation Vulnerability

--Saturday, October 31, 2009, 5:24:38 PM, you wrote to bugtraq@securityfocus.com:

PRL> #####################################################################################

PRL> Application:  Panda Global Protection 2010
PRL>           Panda Internet Security 2010                

PRL> Platforms:    Windows XP Professional SP & windows Vista SP1

PRL> Exploitation: Local Privilege Escalation


{PRL} Multiple Panda Security Products Local Privilege Escalation Vulnerability

#####################################################################################

Application:  Panda Global Protection 2010
          Panda Internet Security 2010                

Platforms:    Windows XP Professional SP & windows Vista SP1

Exploitation: Local Privilege Escalation

Date:         2009-10-27

RE: Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

Date: 02.08.07
Author: tarkus (tarkus (at) tiifp (dot) org)
URL: https://tiifp.org/tarkus
Vendor: Panda (http://www.pandasoftware.com/)
Affected Products: Panda Antivirus 2008
Not Affected Products: - Panda Internetsecurity 2008
- - Panda Antivirus + Firewall 2008

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- -


[TKADV2008-001] Panda Internet Security/Antivirus+Firewall 2008 cpoint.sys Kernel Driver Memory Corruption Vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Advisory:               Panda Internet Security/Antivirus+Firewall 2008 
                        cpoint.sys Kernel Driver Memory Corruption Vulnerability
Advisory ID:            TKADV2008-001
Revision:               1.0
Release Date:           2008/03/08
Last Modified:          2008/03/08
Date Reported:          2008/01/08

KHOBE - 8.0 earthquake for Windows desktop security software

    * Norton Internet Security 2010 17.5.0.127
    * Online Armor Premium 4.0.0.35
    * Online Solutions Security Suite 1.5.14905.0
    * Outpost Security Suite Pro 6.7.3.3063.452.0726
    * Outpost Security Suite Pro 7.0.3330.505.1221 BETA VERSION
    * Panda Internet Security 2010 15.01.00
    * PC Tools Firewall Plus 6.0.0.88
    * PrivateFirewall 7.0.20.37
    * Security Shield 2010 13.0.16.313
    * Sophos Endpoint Security and Control 9.0.5
    * Trend Micro Internet Security Pro 2010 17.50.1647.0000

RE: Re[2]: [Full-disclosure] Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

The vulnerability response team was created in 10/2006 to manage
vulnerability reports and create fixes as necessary. 


>  As  far,  as  I  can  see, pandasecurity.com is Swedish 
> domain of Panda  while  pandasoftware.com  is  international  
> one.  I believe it's quite  reasonable   to   have 
> secure@pandasoftware.com  to  be   forwarded  to
> secure@pandasecurity.com, don't you think so?


Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

  Date: 02.08.07 
  Author: tarkus (tarkus (at) tiifp (dot) org)
  URL: https://tiifp.org/tarkus
  Vendor: Panda (http://www.pandasoftware.com/)
  Affected Products: Panda Antivirus 2008
  Not Affected Products: - Panda Internetsecurity 2008
                         - Panda Antivirus + Firewall 2008  

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -





Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!