Login
User Name:

Password:



Register
Forgot your password?
Vote for Us!
AFKMud 2.2.2
Mar 3, 2019 5:35 pm
By Samson
Development
Nov 28, 2018 12:10 pm
By Keirath
First Immortal
Oct 12, 2018 2:02 pm
By GatewaySysop
Bug in do_climb( )
Jun 5, 2018 7:31 pm
By joeyfogas
question on overland code
May 31, 2018 12:03 pm
By joeyfogas
SmaugFUSS 1.9.3
Author: Various
Submitted by: Samson
AFKMud 2.2.2
Author: AFKMud Team
Submitted by: Samson
tintin++ ogg sound player script for linux
Author: Robert Smith
Submitted by: Vladaar
6Dragons ogg Soundpack
Author: Vladaar
Submitted by: Vladaar
6Dragons 4.4
Author: Vladaar
Submitted by: Vladaar
Users Online
CommonCrawl, Google

Members: 0
Guests: 15
Stats
Files
Topics
Posts
Members
Newest Member
483
3,743
19,401
655
RodrickMci
Today's Birthdays
tphegley (37)
Related Links
» SmaugMuds » Bugfix Lists » AFKMud Bugfix List » [Bug] The destroy_immdata fun...
Forum Rules | Mark all | Recent Posts

[Bug] The destroy_immdata function has buffer overflows.
< Newer Topic :: Older Topic > AFKMud 2.1.2

Pages:<< prev 1 next >>
Post is unread #1 Mar 8, 2010 12:34 am   Last edited Mar 8, 2010 12:34 am by Samson
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,647
JoinedJan 1, 2002

Bug: The destroy_immdata function has buffer overflows.
Danger: High - Very likely deleting an immortal from the game will result in a crash due to overflowed buffers.
Discovered in: AFKMud 2.1.2 (delayed posting - already fixed in 2.1.3)
Found by: apocalypticNRG
Fixed by: Samson

---

act_wiz.cpp, destroy_immdata

Locate:
   char buf[256], buf2[256];


Change to:
   char buf[MSL], buf2[MSL];


Well, that's embarrassing. these buffers were trying to stuff MSL length data into a space 256 bytes long. What more needs to be said?
       
Pages:<< prev 1 next >>