Closed GoogleCodeExporter closed 8 years ago
Update today:
Hello Tavis,
Regarding the vulnerability below, we have issued a hotfix on 10th of February.
GB 4.25.380415.167 has the required fix and 90+% of existing users are updated
as of now.
Original comment by tav...@google.com
on 18 Feb 2016 at 8:29
Wow, so that's what you meant on Twitter.
That's shady and horribly disappointing. If there was ever a reason to
uninstall Comodo, this was it.
Thanks for everything you and Project Zero does. :)
Original comment by kobrasre...@gmail.com
on 19 Feb 2016 at 5:30
comment from Comodo
https://blog.comodo.com/comodo-news/10747/
Original comment by milosz.c...@gmail.com
on 20 Feb 2016 at 12:43
Wow have you read the spin Comodo put on this? "ITS NOT REMOTELY EXPLOITABLE"
they claim, completely dismissing responsibility for what is a serious
privilege escalation vulnerability.
Original comment by tobias.o...@gmail.com
on 21 Feb 2016 at 11:01
[deleted comment]
This transcends a simple bug and vulnerability, it is a backdoor.
Original comment by Jus...@hollebconsulting.com
on 22 Feb 2016 at 10:00
@tobias, indeed, it's also written after the fact, as though the current state
is how it was before.
You can't issue a patch, then claim there wasn't a problem by describing how
the software works post-patch.
Original comment by daniel.j...@gmail.com
on 26 Feb 2016 at 3:21
Original issue reported on code.google.com by
tav...@google.com
on 20 Jan 2016 at 12:06Attachments: