Panda AdminSecure Agent Remote Integer Overflow Vulnerability
BID:25046
Info
Panda AdminSecure Agent Remote Integer Overflow Vulnerability
| Bugtraq ID: | 25046 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-3026 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 24 2007 12:00AM |
| Updated: | May 07 2015 05:36PM |
| Credit: | Tenable Network Security is credited with the discovery of this issue. |
| Vulnerable: |
Panda AdminSecure 2006 |
| Not Vulnerable: | |
Discussion
Panda AdminSecure Agent Remote Integer Overflow Vulnerability
Panda Software AdminSecure is prone to a remote integer-overflow vulnerability because it fails to adequately sanitize user-supplied input.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploits will likely cause denial-of-service conditions.
Panda Software AdminSecure is prone to a remote integer-overflow vulnerability because it fails to adequately sanitize user-supplied input.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploits will likely cause denial-of-service conditions.
Exploit / POC
Panda AdminSecure Agent Remote Integer Overflow Vulnerability
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Panda AdminSecure Agent Remote Integer Overflow Vulnerability
Solution:
The vendor has released an update that addresses this issue. Please see the references for more information.
Solution:
The vendor has released an update that addresses this issue. Please see the references for more information.
References
Panda AdminSecure Agent Remote Integer Overflow Vulnerability
References:
References:
- New Versions and Downloads of Software for Clients (Panda)
- Panda Software Homepage (Panda Software)
- ZDI-07-041: Panda Software AdminSecure Agent Heap Overflow Vulnerability (ZDI Disclosures)
- ZDI-07-041: Panda Software AdminSecure Agent Heap Overflow Vulnerability (Zero Day Initiative (ZDI))