New highly critical vulnerabilities discovered

Jul 23, 2007 10:28 GMT  ·  By

The parent company of Panda Antivirus likes to describe its product as one of the top solutions when it comes to computer security. But the things are a little bit different today when security company Secunia reported a highly critical vulnerability in several Panda software solutions that can allow an attacker assault and compromise an affected system. First of all, you should know that Panda Antivirus Enterprise Suite, Panda Antivirus Platinum 6.x and 7.x, Panda Antivirus Small Business Edition and Panda Antivirus Titanium are all affected by the flaw and must be urgently updated in order to patch the flaw. According to the report, the security flaw is already fixed and patched on most computers as it was distributed using the autoupdate function in the software products.

"Sergio Alvarez has reported a vulnerability in Panda Antivirus, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error when parsing .EXE files and can be exploited to cause a buffer overflow when e.g. scanning a specially crafted .EXE file. Successful exploitation allows execution of arbitrary code," Secunia wrote in the security advisory published today.

It was proved once again that a security solution meant to protect a computer is not 100 percent safe since it includes a flaw able to enhance the attackers' assault over the system. Panda Antivirus is not the only security company and antivirus producer affected by such holes in their engines. Symantec, McAfee, Kaspersky, all of them discovered more or less critical vulnerabilities in the security products that could help attackers compromise a computer.

Just like usual, you can download most of the security products developed by Panda Software straight from Softpedia. Moreover, if you're looking for an alternative for your vulnerable security solution, you can check the ones listed by our website here.