发新话题
打印

[转载]Breed Malfored UDP拒绝服务漏洞

[转载]Breed Malfored UDP拒绝服务漏洞

文章作者:Luigi Auriemma

Summary
Breed is "a game developed by Brat Designs using their Mercury engine". A vulnerability in Breed allows a remote attacker to cause the server to crash by sending a malformed packet.

Credit:
The information has been provided by Luigi Auriemma.
The original article can be found at: http://aluigi.altervista.org/adv/breedzero-adv.txt

Details
The Breed game server can be easily crashed through the sending of an empty UDP packet. In fact if the packet size is equal to zero, the game passes a NULL pointer to the function used to parse the packet's content.

Exploit:
http://www.eviloctal.com/forum/read.php?tid=6911
曾几何时,有人对我说:装B遭雷劈。我说:去你妈的。于是,这个人又对我说:如果再说脏话,上帝会惩罚你的。我说:我操上帝。结论:彪悍的人生不需要上帝。

TOP

发新话题