This was researched with Alex Hernandez from sybsecurity.com and from elhacker.net.
The document explaining the vulnerabilities is here.
And the exploit for the elevation of privileges is here.
This was reported to Symantec ( secure@symantec.com ), and they had a very quick and fluent communication with us, they responded fast whenever we asked for information, or had any doubts. The follow-up of this vulnerability has been tracked until today, and so the security team of Symantec is the best one we've met.
Symantec released an advisory here:
[www.symantec.com]
Sybsecurity released another one here:
[www.sybsecurity.com]
Greetings!! sirdarckcat