Sign In
Robert Horvick's Weblog
Team Foundation Server
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Options
About
Email Blog Author
RSS for posts
Atom
RSS for comments
OK
Search
Advanced search options...
Search In:
Everything
Blogs
Forums
People
Groups
Places
Pages
Date range:
All Time
Last Year
Last 6 Months
Last 3 Months
Last Month
Last Week
Last Two Days
Tags
Code
coverage
Defects
General
ghostonthird
MSBuild
PDC
rails
rake
Rants
ruby
servicing
tfs
TFS Migration
TFS Version Control
tfsquiesce
Windows7
Archive
Archives
November 2010
(1)
February 2010
(1)
October 2009
(2)
January 2009
(3)
December 2008
(3)
October 2008
(2)
November 2007
(2)
April 2007
(2)
March 2007
(1)
January 2007
(4)
December 2006
(4)
November 2006
(9)
October 2006
(5)
September 2006
(1)
August 2006
(2)
May 2006
(1)
April 2006
(2)
February 2006
(5)
September 2005
(1)
May 2005
(1)
March 2004
(12)
February 2004
(4)
January 2004
(7)
January, 2004
MSDN Blogs
>
Robert Horvick's Weblog
>
January, 2004
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Robert Horvick's Weblog
SOLUTION: Spotting Code Defects #2 (Accessing Registry Values)
Posted
over 8 years ago
by
RobertHorvick
1
Comments
This defect seems to have led a few more people astray then the last. While no one posted publicly several people emailed me solutions. Thanks to all who contributed! So let’s start with the hints: Hint #1: It is not only important to...
Robert Horvick's Weblog
HINT: Spotting Code Defects #2 (Accessing Registry Values)
Posted
over 8 years ago
by
RobertHorvick
1
Comments
There are a few defects here ... ranging from a design issue to a potential buffer-overrun that could cause your system to be comprised and the attacker to be able to execute arbitrary code on your machine. Hint #1: It is not only important to test...
Robert Horvick's Weblog
Spotting Code Defects #2 (Accessing Registry Values)
Posted
over 8 years ago
by
RobertHorvick
1
Comments
Since there was positive feedback on the last one - here is another. I will post hints and the solution next week. There are multiple defects in this code. I added the _tmain to give some context on how the function getVersionString might be called...
Robert Horvick's Weblog
SOLUTION: Spotting Code Defects - #1 (Named Pipe Server)
Posted
over 8 years ago
by
RobertHorvick
4
Comments
So the results are back – and that was some buggy code! First I want to thank everyone who played along. Both those that had the courage to post to the public comments and those that replied offline. Also - before I go further - is this...
Robert Horvick's Weblog
Spotting Code Defects - #1 (Named Pipe Server)
Posted
over 8 years ago
by
RobertHorvick
14
Comments
When you read bad code you learn what not to do. You learn to identify the many classes of errors and the patterns that often lead up to them. When you read good code you learn how to write good code. You observe “tricks” of good programmers...
Robert Horvick's Weblog
Stack buffer overrun example.
Posted
over 8 years ago
by
RobertHorvick
0
Comments
[migrated from my other blog] I can never leave well-enough alone. If I read “this is how this works“ then it's only a matter of time before I write my own example to proof what I just read. This post is another example of that... There...
Robert Horvick's Weblog
Native code caller verification - and how not to do it.
Posted
over 8 years ago
by
RobertHorvick
0
Comments
[Since people asked - I re-posted this from my other blog. I didn't “steal“ it.] Recently on Raymond Chen’s blog he had a post about not trusting return addresses . Specifically to not use the _ReturnAddress() intrinsic and GetModuleHandleEx...
Page 1 of 1 (7 items)