Welcome, Guest. Please login or register.
August 21, 2008, 11:50:29 PM

Login with username, password and session length

185081 Posts
21490 Topics
52099 Members

Latest Member: pscraja

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Memory Firewall(Buffer Overflow Protection)
| | |-+  Frequently Asked Questions (Comodo Memory Firewall)
| | | |-+  Is CMF necessary after VISTA SP1 and XP SP3
« previous next »
Pages: [1] Go Down Print
Author Topic: Is CMF necessary after VISTA SP1 and XP SP3  (Read 4168 times)
Andreas
Comodo's Hero
*****
Offline Offline

Posts: 336


« on: February 05, 2008, 07:11:05 PM »

I read in pc magazines that Microsoft will protects against buffer overflow after SP1 for Vista and SP3 for XP.

So, will we need CMF after this service packs?

Andreas
Logged

WindowsXP SP3,  CPF 3.0.25 or CPF 2.4 or Sygate 5.5 free, CAV 3.0 or AVG 8.0, BOClean or SpywareDoctor or no antispyware, Firefox 3.0 or IE 8.0 Beta
Commodus
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 1565


Emperor Commodus


« Reply #1 on: February 05, 2008, 07:37:23 PM »

I read in pc magazines that Microsoft will protects against buffer overflow after SP1 for Vista and SP3 for XP.

So, will we need CMF after this service packs?

Andreas

Does Windows Firewall protect U ?  Wink So I think the answer is clear. Yes. I will sure keep it.  Smiler
« Last Edit: February 06, 2008, 01:55:25 PM by Commodus » Logged

You start up as everyone else, you end up as everyone else ...

nLited Windows XP Professional SP3 32 bit
Comodo Firewall Pro Version 3.0.25.378
Comodo Memory Firewall Version 2.0.4.20
Comodo Vulnerability Analyzer Version 1.0.1.18 BETA
asker
Comodo Member
**
Offline Offline

Posts: 37


« Reply #2 on: March 09, 2008, 10:52:29 AM »

Does Windows Firewall protect U ?  Wink So I think the answer is clear. Yes. I will sure keep it.  Smiler

I have a feeling your answer is an amateour's one. Vista is able to stealth all the ports, unlike some of the other third-party firewalls so it is actually good. I suppose it does not pass some of the leaks, but so does not many others. I think vista is a good firewall, but there are stronger firewalls on the market like comodo, zonealarm, outpost, jetico, and others, so it is not fair to say it does not protects you from BO, just like that in a snap, especially if pcmag says contrary. Sorry for being harsh, but so were you. We need to take in consideration that NSA worked along with microsoft to fortify their security so I would say it is pretty strong.
Logged
Commodus
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 1565


Emperor Commodus


« Reply #3 on: March 09, 2008, 04:53:54 PM »

I have a feeling your answer is an amateour's one. Vista is able to stealth all the ports, unlike some of the other third-party firewalls so it is actually good. I suppose it does not pass some of the leaks, but so does not many others. I think vista is a good firewall, but there are stronger firewalls on the market like comodo, zonealarm, outpost, jetico, and others, so it is not fair to say it does not protects you from BO, just like that in a snap, especially if pcmag says contrary. Sorry for being harsh, but so were you. We need to take in consideration that NSA worked along with microsoft to fortify their security so I would say it is pretty strong.

So how come Windows Firewall always score 0 points ? And yes - I am an armateur, but not a noob (at least not in Windows)  Cheesy Maybe you can tweak Windows firewall to be much more powerfull, but I wouldn't bother.

And again - Vista SP1 does not protect you from buffer overflows as good as CMF. Fullstop. Period.  Grin

P.S. NSA could do a lot better then  Grin
P.S.P.S I'm don't want to be harsh, and I'm not trying to be. My answers can be a little stupid and not fluent, because of my poor English. So guys if offended someone - I'm really sorry.  Embarrassed Forgive me and point out my mistakes please  Angel
« Last Edit: March 09, 2008, 04:59:18 PM by Commodus » Logged

You start up as everyone else, you end up as everyone else ...

nLited Windows XP Professional SP3 32 bit
Comodo Firewall Pro Version 3.0.25.378
Comodo Memory Firewall Version 2.0.4.20
Comodo Vulnerability Analyzer Version 1.0.1.18 BETA
Ragwing
Guardian of the Light Master of the Force Invincible Legend Almighty
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3029



« Reply #4 on: March 09, 2008, 04:56:57 PM »

So how come Windows Firewall always score 0 points ?

Because leaktests only test outbound protection.

And again - Vista SP1 does not protect you from buffer overflows as good as CMF. Fullstop. Period.  Grin

CMF protects against  buffer overflows in the STACK and HEAP memory, and also against ret2libc attacks and corrupted SEH Chains. Will Vista SP1 and XP SP3 protect against these kind of attacks?

Cheers,
Ragwing
Logged

"The closer you get to the light, the greater your shadow becomes"

XP SP3 2 GHz 768 MB RAM
5 services / 12 processes
Commodus
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 1565


Emperor Commodus


« Reply #5 on: March 09, 2008, 05:00:52 PM »

Because leaktests only test outbound protection.

CMF protects against  buffer overflows in the STACK and HEAP memory, and also against ret2libc attacks and corrupted SEH Chains. Will Vista SP1 and XP SP3 protect against these kind of attacks?

Cheers,
Ragwing


That's what I'm trying to say. A firewall without an outbound protection is useless (to me)  Smiley
Logged

You start up as everyone else, you end up as everyone else ...

nLited Windows XP Professional SP3 32 bit
Comodo Firewall Pro Version 3.0.25.378
Comodo Memory Firewall Version 2.0.4.20
Comodo Vulnerability Analyzer Version 1.0.1.18 BETA
asker
Comodo Member
**
Offline Offline

Posts: 37


« Reply #6 on: March 10, 2008, 04:56:13 AM »


That's what I'm trying to say. A firewall without an outbound protection is useless (to me)  Smiley
Hi Commodus
Vista firewall is only inbound just by default, but you can change that in advanced options, and than it analyzes also outbound traffic. By the way, you did not offend me, but it is good to hear your did not want to. Often we do not understand each other and so it easily comes to offending someone unintentially.
I really do not know if vista sp1 will protect agains  buffer overflow anyway. I suppose when it comes out publicaly, we shall read about that topic in some forums or magazines, but till than I will be using CMF onward.
cheers
Logged
Commodus
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 1565


Emperor Commodus


« Reply #7 on: March 10, 2008, 05:30:18 AM »

Hi Commodus
Vista firewall is only inbound just by default, but you can change that in advanced options, and than it analyzes also outbound traffic. By the way, you did not offend me, but it is good to hear your did not want to. Often we do not understand each other and so it easily comes to offending someone unintentially.
I really do not know if vista sp1 will protect agains  buffer overflow anyway. I suppose when it comes out publicaly, we shall read about that topic in some forums or magazines, but till than I will be using CMF onward.
cheers

Glad to hear we're in peace  Afro (Bob Marley)  Cheesy

Didn't knew the outbound thing (so thanks for that) in Windows Firewall, but again I won't try it anyway, cos Comodo is much more superior  Smiley
Logged

You start up as everyone else, you end up as everyone else ...

nLited Windows XP Professional SP3 32 bit
Comodo Firewall Pro Version 3.0.25.378
Comodo Memory Firewall Version 2.0.4.20
Comodo Vulnerability Analyzer Version 1.0.1.18 BETA
panic
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 5315


... and I say to myself, "What a wonderful world"


« Reply #8 on: March 10, 2008, 05:31:03 AM »

From what I can find out, Vista SP1 and XP SP3 are targetting BO vulnerabilities in specific system libraries, rather than monitoring and protecting invalid buffer executions system wide. If this is correct, the CMF would still be desirable (preferable).

Ewen :-)
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
Yuriy
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 972


« Reply #9 on: March 10, 2008, 07:23:45 AM »

From what I can find out, Vista SP1 and XP SP3 are targetting BO vulnerabilities in specific system libraries, rather than monitoring and protecting invalid buffer executions system wide
This explains some things... Glad to find out more on this question.
Thanks Ewen Thumb Up
Logged
asker
Comodo Member
**
Offline Offline

Posts: 37


« Reply #10 on: March 10, 2008, 11:41:48 AM »

Glad to hear we're in peace  Afro (Bob Marley)  Cheesy

Didn't knew the outbound thing (so thanks for that) in Windows Firewall, but again I won't try it anyway, cos Comodo is much more superior  Smiley
Cheers

Logged
3xist
Guest
« Reply #11 on: May 31, 2008, 04:22:02 AM »

Locked.

Reason: Out-Dated post.

Josh
Logged
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Firewall
Page created in 0.231 seconds with 20 queries.
Powered by SMF 1.1.5 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com