Welcome, Guest. Please login or register.
January 07, 2010, 02:01:18 PM

Login with username, password and session length

348637 Posts
38539 Topics
87631 Members

Latest Member: Burlington

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Archived Boards
| |-+  Comodo Memory Firewall(Buffer Overflow Protection)
| | |-+  Comodo Memory Firewall Beta Corner
| | | |-+  Buffer Overflow Testing Application!
« previous next »
Pages: 1 2 [3] 4 Go Down Print
Author Topic: Buffer Overflow Testing Application!  (Read 16282 times)
MikeH
Comodo Loves me
****
Offline Offline

Posts: 169


« Reply #30 on: January 12, 2008, 12:23:44 PM »

I am unable to run the Buffer Overflow Testing Application from a limited account.
Does this imply I am immune from buffer overflow vulnerabilities in a limited account?

When running the Buffer Overflow Testing Application from an administrative account, the application runs and Comodo Memory Firewall flags the buffer overflow vulnerabilities as it is designed to do.

Regards,
Mike
Logged
Tyler Durden
Global Moderator
Comodo Loves me
*****
Offline Offline

Posts: 164



« Reply #31 on: January 13, 2008, 02:44:56 AM »

Quote
Does this imply I am immune from buffer overflow vulnerabilities in a limited account?
No, CMF works on limited accounts too.
Logged

The Verve RETURNED !!! Can't you feel this beauty in life ?!
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8391



WWW
« Reply #32 on: January 13, 2008, 09:27:25 AM »

I am unable to run the Buffer Overflow Testing Application from a limited account.
Does this imply I am immune from buffer overflow vulnerabilities in a limited account?

When running the Buffer Overflow Testing Application from an administrative account, the application runs and Comodo Memory Firewall flags the buffer overflow vulnerabilities as it is designed to do.

Regards,
Mike

No you are not immune from BO on a limited account.
Cos a vulnerability could exploit something on your system and get in, the vulnerability is still there, just that our testing app didn't work on limited account.

thanks
Melih
Logged

patrice58
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 436


« Reply #33 on: January 20, 2008, 09:49:32 PM »

I have CMF and it failed all 3 tests. When I first ran the test when I thought CMF was running but for some weird reason after a factory reset the tick for start up with windows was unchecked. Me not knowing that ran the test all 3 failed (as it would) so found out what happened make CMF start by clicking on the desktop ran the test again failed all 3 and thought ok let me restart the pc and run the test which I did and still failed now 1st how can I get the test to say passed tho that is less important and 2nd does the fail message means I am not fully protected even with CMF?
Logged

Vista Home Premium 32 bit (user account) CIS 3.13.125662.579 + CAV (On Access) ,V-Engine 2.7.0.33, SpywareBlaster 4.2, SAS (free),  a-squared(free) MBAM (free) Finjan Secure Browsing, Windows Defender (scanner only) Sandboxie 3.42
SS26
Comodo's Hero
*****
Offline Offline

Posts: 1508


« Reply #34 on: January 26, 2008, 03:01:37 PM »

My respect to Comodo team!   (B)
BO tests are really brilliant idea. And i'm gonna to tell why.

When i tell people there is no effective protection nowadays from BO exploits except Comodo Memory Firewall, some of them begin to argue: you are not right - we have DEP and hardware protection (hardware support for DEP?) on modern processors.
Instead of disputing with them, i say: no problem, you can test how DEP and hardware functions of your processors protect you - check these tests (give them links to your tests).

After that nobody so far continues to argue  Grin
Some say "thanks, we didn't know..."  (S)
Logged
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8391



WWW
« Reply #35 on: January 26, 2008, 05:25:03 PM »

My respect to Comodo team!   (B)
BO tests are really brilliant idea. And i'm gonna to tell why.

When i tell people there is no effective protection nowadays from BO exploits except Comodo Memory Firewall, some of them begin to argue: you are not right - we have DEP and hardware protection (hardware support for DEP?) on modern processors.
Instead of disputing with them, i say: no problem, you can test how DEP and hardware functions of your processors protect you - check these tests (give them links to your tests).

After that nobody so far continues to argue  Grin
Some say "thanks, we didn't know..."  (S)

Indeed, these test are to show how insecure we are. The last thing we want is for users to have "false sense of security". Educating and getting them out of this false sense of security is an important step!

thanks

Melih
Logged

patrice58
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 436


« Reply #36 on: January 27, 2008, 11:43:51 AM »

What about if the test says that you are not protected as mine does even tho you have CMF installed. Nobody seems to answer that tho?
Logged

Vista Home Premium 32 bit (user account) CIS 3.13.125662.579 + CAV (On Access) ,V-Engine 2.7.0.33, SpywareBlaster 4.2, SAS (free),  a-squared(free) MBAM (free) Finjan Secure Browsing, Windows Defender (scanner only) Sandboxie 3.42
SS26
Comodo's Hero
*****
Offline Offline

Posts: 1508


« Reply #37 on: January 27, 2008, 12:09:05 PM »

What about if the test says that you are not protected as mine does even tho you have CMF installed. Nobody seems to answer that tho?
Is CMF running when tests are performed? I didn't experience any problems: CMF 2.0.4.20 passed for me all tests easily.
Logged
patrice58
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 436


« Reply #38 on: January 27, 2008, 12:34:54 PM »

Yeah it is running but everybody seems to shy away from answering that question as somebody else has posted the same question somewhere else has the poster had a reply? Is the pope black?
Logged

Vista Home Premium 32 bit (user account) CIS 3.13.125662.579 + CAV (On Access) ,V-Engine 2.7.0.33, SpywareBlaster 4.2, SAS (free),  a-squared(free) MBAM (free) Finjan Secure Browsing, Windows Defender (scanner only) Sandboxie 3.42
Blas
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 373


« Reply #39 on: January 27, 2008, 01:49:59 PM »

Maybe Im just viewing your question from a way too simple point, but it only could mean that either you have a corrupt cmf installation or there is a kind of incompatibility with your system. Is there a green check in the lower left corner of the main cmf window?
Logged



visit the dragon he is lonely
patrice58
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 436


« Reply #40 on: January 27, 2008, 02:24:23 PM »

nah it's red but even before the new version when the icon was green still the same fail notice
Logged

Vista Home Premium 32 bit (user account) CIS 3.13.125662.579 + CAV (On Access) ,V-Engine 2.7.0.33, SpywareBlaster 4.2, SAS (free),  a-squared(free) MBAM (free) Finjan Secure Browsing, Windows Defender (scanner only) Sandboxie 3.42
Blas
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 373


« Reply #41 on: January 27, 2008, 07:14:35 PM »

Anyway it doesn't sound normal. Have you posted it in a detailed bug report? Are you running a kind of striped os nlited OS? I mean services disabled ect. What other resident softwares are you using?
Logged



visit the dragon he is lonely
Graham1
Comodo's Hero
*****
Offline Offline

Posts: 900



« Reply #42 on: December 16, 2008, 07:00:08 PM »

Hi

Do you have any plans to release the "Buffer Overflow Testing Application" as a standalone tool? (i.e similar to Comodo Leak Tests). Rather than having to install this tool, just unzip and run the executable. Just an idea.

Smiley
Logged
Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3287



WWW
« Reply #43 on: January 24, 2009, 09:40:09 PM »

I agree with Graham1..
Logged

E5200 2.5ghz [at] 3.33ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD


~~~
Trying to see if I can completely switch to linux Cheesy
JoWa
Product Translator
Comodo's Hero
*****
Online Online

Posts: 938



« Reply #44 on: January 25, 2009, 03:52:20 AM »

Or include BO tests in CLT?
Logged

Windows XP Pro SP3 | CIS 3.13.126709.581 | CTM 2.4.125818.154 | Dragon 0.9.0.16 | CSC 2.1.114194.1 | CSE 2.4.0.98 RC | MSI 865PE Neo2-FIS2R | Pentium 4 HT 3,4 GHz | 4×1 GB RAM | SATA: 300 GB, IDE: 75 + 150 GB | ATI Radeon 9800 Pro
Tags:
Pages: 1 2 [3] 4 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.045 seconds with 18 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com