Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 21, 2013, 07:13:58 PM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
663458
Posts
70536
Topics
145194
Members
Latest Member:
Oitagxgu
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Learn about Computer Security and Interact with Security Experts
Leak Testing/Attacks/Vulnerability Research
Comodo DLL injection via weak hash function exploitation Vulnerability
« previous
next »
Pages:
[
1
]
Author
Topic: Comodo DLL injection via weak hash function exploitation Vulnerability (Read 6066 times)
srinath
Newbie
Offline
Posts: 5
Comodo DLL injection via weak hash function exploitation Vulnerability
«
on:
February 17, 2007, 06:52:12 AM »
This originally appeared in the wilders security forums by a person called grey87y.
"Comodo Firewall Pro (former Comodo Personal Firewall) implements a component control, which is based on a checksum comparison of process modules. Probably to achieve a better performance, cyclic redundancy check (CRC32) is used as a checksum function in its implementation. However, CRC32 was developed for error detection purposes and can not be used as a reliable cryptographic hashing function because it is possible to generate collisions in real time. The character of CRC32 allows attacker to construct a malicious module with the same CRC32 checksum as a chosen trusted module in the target system and thus bypass the protection of the component control.
Vulnerable software:
* Comodo Firewall Pro 2.4.17.183
* Comodo Firewall Pro 2.4.16.174
* Comodo Personal Firewall 2.3.6.81
* probably all older versions of Comodo Personal Firewall 2
* possibly older versions of Comodo Personal Firewall"
I don't know the truth behind it but just wanted to bring it your notice. I love and greatly admire comodo firewall and looking forward to the stable version ofCAVS. Many members at wilders security are not very grateful though. (B)
«
Last Edit: February 17, 2007, 07:11:34 AM by srinath
»
Logged
soyabeaner
Guest
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #1 on:
February 17, 2007, 07:53:39 AM »
That originated from
Matousec's advisory
and it shows Comodo was notified on 2007-02-01.
Logged
Dwarden
Newbie
Offline
Posts: 19
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #2 on:
February 17, 2007, 12:18:47 PM »
IMHO use of CRC32 was performance/easy coding trick ...
now when CPF matured it's time to offer users minimum of MD5 or some SHA hashing
(or ideally both, switchable in options (who want perf use MD5 who want safe use SHA-256) ...
«
Last Edit: February 17, 2007, 12:20:31 PM by Dwarden
»
Logged
Ideas are like ocean w/o borders!
srinath
Newbie
Offline
Posts: 5
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #3 on:
February 18, 2007, 02:27:56 AM »
Quote from: soyabeaner on February 17, 2007, 07:53:39 AM
That originated from
Matousec's advisory
and it shows Comodo was notified on 2007-02-01.
Thanks for clarification.
Logged
Rotty
Comodo's Hero
Offline
Posts: 903
http://www.venganza.org/ - Noodly Appendage
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #4 on:
February 18, 2007, 04:15:08 AM »
I gotta say that using a Cyclic redundancy check for a cryptographic check is against cryptography 101 and should really not have happened.
That being said, i am sure they will fix it.
Logged
The opinions expressed in my posts are my own.
They do NOT necessarily represent or reflect the views of my employer.
Toxteth O'Grady
Comodo's Hero
Offline
Posts: 588
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #5 on:
February 18, 2007, 04:32:17 AM »
If it is that bad, why did they use it in the first place?
This calls for an offical Comodo reply\clarification
Logged
Rotty
Comodo's Hero
Offline
Posts: 903
http://www.venganza.org/ - Noodly Appendage
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #6 on:
February 18, 2007, 06:23:56 AM »
I can't support the original decision as i know too much
. That being said, allot of vendors seem to make poor programming decisions and quick-fixes and in the end, development time and the security added may not have made business sense...
Anything i say is my opinion and not the opinion of Comodo, or any organization or person i may have contact with, but let me re-state for this thread that anything said by myself is MY opinion ONLY.
An official comment would be a good idea....
Logged
The opinions expressed in my posts are my own.
They do NOT necessarily represent or reflect the views of my employer.
edeppi
Newbie
Offline
Posts: 24
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #7 on:
February 19, 2007, 04:28:58 AM »
Will be fixed or not???
Comodo please reply.
Thanks
Logged
soccerfan
Newbie
Offline
Posts: 7
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #8 on:
February 19, 2007, 03:15:51 PM »
The silence from Comodo in regard to this problem is deafening.
Wonder why Melih and/or others are not responding!
Logged
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12913
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #9 on:
February 19, 2007, 04:31:59 PM »
this is already fixed for v3...
Melih
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
Bubu74
Comodo Loves me
Offline
Posts: 177
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #10 on:
February 19, 2007, 05:26:58 PM »
Quote from: Melih on February 19, 2007, 04:31:59 PM
this is already fixed for v3...
Melih
I'm glad to hear that, and hope it will be released soon.
Logged
COMODO user since January 2007
soccerfan
Newbie
Offline
Posts: 7
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #11 on:
February 19, 2007, 05:57:21 PM »
Thanks for the update, Melih.
This new version 3 should be worth the wait.
Any fixes for the current 2.x in sight?
Logged
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12913
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #12 on:
February 19, 2007, 06:18:27 PM »
Quote from: soccerfan on February 19, 2007, 05:57:21 PM
Thanks for the update, Melih.
This new version 3 should be worth the wait.
Any fixes for the current 2.x in sight?
the 3 is only weeks away..
this attack is in the wild and we don't expect to see it within next few weeks.
Hence we decided to concentrate all the developers on v3 rather than take their focus off it.
Melih
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
VaMPiRiC_CRoW
Guest
Re: Comodo DLL injection via weak hash function exploitation Vulnerability
«
Reply #13 on:
February 19, 2007, 06:26:08 PM »
Quote from: Melih on February 19, 2007, 04:31:59 PM
this is already fixed for v3...
Logged
Tags:
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.051 seconds with 21 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com