Raised This Month: $32 Target: $400
 8% 

[ANY] Map Slots Locker


Post New Thread Reply   
 
Thread Tools Display Modes
Dragokas
Veteran Member
Join Date: Nov 2017
Location: Ukraine on fire
Old 08-18-2023 , 12:38   Re: [ANY] Map Slots Locker
Reply With Quote #21

Did anybody investigate, if the issue caused by engine doesn't share the same baseline table pointers for all players or it is due to initial overflow in other table types which may share same buffer space?
Also, what is the purpose of baseline table and is it can be safely deleted at server side as soon as required info synced with the client?
__________________
Expert of CMD/VBS/VB6. Malware analyst. L4D fun (Bloody Witch & FreeZone)
[My plugins] [My tools] [GitHub] [Articles] [HiJackThis+] [Donate]

Last edited by Dragokas; 08-18-2023 at 12:40.
Dragokas is offline
cravenge
Veteran Member
Join Date: Nov 2015
Location: Chocolate Factory
Old 08-18-2023 , 14:41   Re: [ANY] Map Slots Locker
Reply With Quote #22

Quote:
Originally Posted by Dragokas View Post
Did anybody investigate, if the issue caused by engine doesn't share the same baseline table pointers for all players or it is due to initial overflow in other table types which may share same buffer space?
Also, what is the purpose of baseline table and is it can be safely deleted at server side as soon as required info synced with the client?
Still doesn't remove the big elephant in the room.

Allowing such overflow brings up a path for an RCE exploit on both the server and its clients. I, as a server owner, definitely wouldn't want malicious users taking over my server and executing dangerous commands on the currently playing clients remotely due to such "patch".

Valve won't help you with this even if it's an RCE exploit since they made that function work that way and precautions were already accounted for. By removing one of those precautions, the fault falls onto the server owners.

Additional info:

Last edited by cravenge; 08-18-2023 at 15:26.
cravenge is offline
Dragokas
Veteran Member
Join Date: Nov 2017
Location: Ukraine on fire
Old 08-18-2023 , 16:05   Re: [ANY] Map Slots Locker
Reply With Quote #23

ok, I sent pull request to fix at least unloading part.

Not sure about RCE ability, it depends on which information used for generating that table, server map or some client data. But, still not looks good. Agree.
__________________
Expert of CMD/VBS/VB6. Malware analyst. L4D fun (Bloody Witch & FreeZone)
[My plugins] [My tools] [GitHub] [Articles] [HiJackThis+] [Donate]
Dragokas is offline
Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 16:56.


Powered by vBulletin®
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Theme made by Freecode