Login
User Name:

Password:



Register
Forgot your password?
Vote for Us!
tintin++ ogg sound player script for linux
Author: Robert Smith
Submitted by: Vladaar
6Dragons ogg Soundpack
Author: Vladaar
Submitted by: Vladaar
6Dragons 4.4
Author: Vladaar
Submitted by: Vladaar
LoP 1.46
Author: Remcon
Submitted by: Remcon
LOP 1.45
Author: Remcon
Submitted by: Remcon
Users Online
CommonCrawl, DotBot, Bing, Yandex

Members: 0
Guests: 10
Stats
Files
Topics
Posts
Members
Newest Member
481
3,739
19,386
623
MelbaBoudr
Today's Birthdays
There are no member birthdays today.
Related Links
» SmaugMuds.org » Bugfix Lists » AFKMud Bugfix List » [Bug] The destroy_immdata fun...
Forum Rules | Mark all | Recent Posts

[Bug] The destroy_immdata function has buffer overflows.
< Newer Topic :: Older Topic > AFKMud 2.1.2

Pages:<< prev 1 next >>
Post is unread #1 Mar 7, 2010, 10:34 pm   Last edited Mar 7, 2010, 10:34 pm by Samson
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,643
JoinedJan 1, 2002

Bug: The destroy_immdata function has buffer overflows.
Danger: High - Very likely deleting an immortal from the game will result in a crash due to overflowed buffers.
Discovered in: AFKMud 2.1.2 (delayed posting - already fixed in 2.1.3)
Found by: apocalypticNRG
Fixed by: Samson

---

act_wiz.cpp, destroy_immdata

Locate:
   char buf[256], buf2[256];


Change to:
   char buf[MSL], buf2[MSL];


Well, that's embarrassing. these buffers were trying to stuff MSL length data into a space 256 bytes long. What more needs to be said?
       
Pages:<< prev 1 next >>