Re: [Full-disclosure] Panda ActiveScan 2.0 remote code execution

2008-07-04 Thread Panda Security Response
The fixed version is now in production. Regards, -- Pedro Bustamante Senior Research Advisor Panda Security email: [EMAIL PROTECTED] <0xC684A6F9> vulns: [EMAIL PROTECTED] <0x70F3FEA0> phone: (+34) 91-8063700 blog: http://research.pandasoftware.com ---

Re: [Full-disclosure] Panda ActiveScan 2.0 remote code execution

2008-07-04 Thread Panda Security Response
Please allow at least one week for us to respond before public disclousure. We only received this information a few days ago. Regards, -- Pedro Bustamante Senior Research Advisor Panda Security email: [EMAIL PROTECTED] <0xC684A6F9> vulns: [EMAIL PROTE

Re: [Full-disclosure] Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

2007-09-24 Thread Panda Security Response
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 > -Original message- > From: 3APA3A [mailto:[EMAIL PROTECTED] > > [EMAIL PROTECTED] was contacted about this same > vulnerability in Panda Antivirus 2007 on August, 11 2006 > (more than year ago) without any results and response, un

Re: [Full-disclosure] Panda Antivirus 2008 Local Privileg Escalation (UPS they did it again)

2007-09-19 Thread Panda Security Response
grade to Panda Antivirus 2008 and apply the fix provided. For future vulnerability reporting to Panda please write specifically and exclusively to "Panda Security Response" <[EMAIL PROTECTED]> instead of generic beta or informational contact mailboxes. -