Incredible list of flaws that a security company has no excuse releasing with. The ASLR flaws alone show a fundamental misunderstanding of basic security practices.

It seems from this that very little effort has been put into fuzz testing Sophos products. With the complexities involved in anti-virus scanning I really have to wonder how many other security products are actually the largest holes in the system.

