PDA

View Full Version : Major Half Life 1.1.0.8 exploit found


Despotes
09-24-01, 06:24 PM
The following was taken from here------
http://www.icrontic.com/index.php?page=public/index

What would a new patch be without a new huge exploit? Well, the new 1.1.0.8 Half-Life patch has an exploit which allows people to do anything they want on your computer. Servers are included.


"By running the command with around 128 characters it is possible to overflow the buffer and execute arbitrary code. While this problem is on the client side it is still a serious issue, since servers have a function named "g_engfuncs.pfnClientCommand" which allows the server to force clients to execute whatever console command they want. This means that this overflow can be exploited remotely by means of this function. A server administrator could easily easily take advantage of this and exploit clients automatically as they connected to the server."

sockmonkey
09-24-01, 06:32 PM
neat. another reason to play DoD:)

Amedeo602
09-24-01, 08:07 PM
Originally posted by sockmonkey
neat. another reason to play DoD:)

correct me if i'm wrong but isn't DoD just another HL mod, meaning it runs using the same engine and is vulnerable to the same bugs ???

MrOOBiLL
09-24-01, 08:58 PM
Originally posted by Amedeo602


correct me if i'm wrong but isn't DoD just another HL mod, meaning it runs using the same engine and is vulnerable to the same bugs ???

YES, Half life 1.1.0.8 IS Half life 1.1.0.8, mods dont matter.

-=HN=- Wild9
09-24-01, 10:31 PM
nooo, you say sweet, another reason to play wolfenstein

UnseenMenace
09-25-01, 04:27 AM
Comeback Q3 all is forgiven :p

Amedeo602
09-25-01, 07:52 AM
Originally posted by -=HN=- Wild9
nooo, you say sweet, another reason to play wolfenstein


yes....we must move on...ON TO CASTLE WOLFENSTEIN!

oc jason
09-25-01, 10:23 AM
that is almost useless, how many servers have a 128 player max, i have only seen three out of 7000 servers, so otherwise the good ole 24 and 18 player matches are not affected