November 5, 2012 | Geeks Union
A working exploit for Sophos 8.0.6 on Mac is available, however the
techniques used in the exploit easily transfer to Windows and Linux,
due to multiple critical implementation flaws described in the paper.
Testcases for the other flaws described in the paper are available on
Sophos has responded with a post on the multiple vulnerabilities and responds over and over that ‘Sophos has seen no evidence of this vulnerability being exploited in the wild’. But is that really good enough? Read more [...]