exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

colinmcraerally04.txt

colinmcraerally04.txt
Posted Jun 8, 2004
Authored by Luigi Auriemma | Site aluigi.altervista.org

Colin McRae Rally 04 has a flaw where a client can passively block an entire gaming network by setting a value too high.

tags | advisory
SHA-256 | 59bf7b0c634d77e4622f2f88c9b7593b772f34e7892e3e2eb4d1655dc959e6e4

colinmcraerally04.txt

Change Mirror Download

#######################################################################

Luigi Auriemma

Application: Colin McRae Rally 04
http://www.codemasters.com/colinmcraerally04/
Versions: 1.0
Platforms: Windows
Bug: bad allocation (?)
Risk: medium
Exploitation: remote, versus clients (broadcast)
Date: 04 June 2004
Author: Luigi Auriemma
e-mail: aluigi@altervista.org
web: http://aluigi.altervista.org


#######################################################################


1) Introduction
2) Bug
3) The Code
4) Fix


#######################################################################

===============
1) Introduction
===============


Colin McRae Rally 04 is the famous rally game developed by Codemasters
and released at the beginning of April 2004.


#######################################################################

======
2) Bug
======


The bug is in a value that the servers send back to the clients when
they enter in the multiplayer menu.
The bugged value is the number of players in the server ("numplayers"),
if it is too high it causes the crash of the client.

Due the location of the bug, any vulnerable client can't play online
because it automatically requests informations to all the online
servers so a single malicious server can passively block the entire
game network.


#######################################################################

===========
3) The Code
===========


http://aluigi.altervista.org/poc/cmr4cdos.zip


#######################################################################

======
4) Fix
======


No fix.
Two months for a patch is not what I mean with "quick fix".
The bug was found just two days after the pubblic release of the game
and quickly noticed to the developers, but no patch has been released
yet.


#######################################################################


---
Luigi Auriemma
http://aluigi.altervista.org
Login or Register to add favorites

File Archive:

June 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jun 1st
    18 Files
  • 2
    Jun 2nd
    0 Files
  • 3
    Jun 3rd
    0 Files
  • 4
    Jun 4th
    0 Files
  • 5
    Jun 5th
    0 Files
  • 6
    Jun 6th
    0 Files
  • 7
    Jun 7th
    0 Files
  • 8
    Jun 8th
    0 Files
  • 9
    Jun 9th
    0 Files
  • 10
    Jun 10th
    0 Files
  • 11
    Jun 11th
    0 Files
  • 12
    Jun 12th
    0 Files
  • 13
    Jun 13th
    0 Files
  • 14
    Jun 14th
    0 Files
  • 15
    Jun 15th
    0 Files
  • 16
    Jun 16th
    0 Files
  • 17
    Jun 17th
    0 Files
  • 18
    Jun 18th
    0 Files
  • 19
    Jun 19th
    0 Files
  • 20
    Jun 20th
    0 Files
  • 21
    Jun 21st
    0 Files
  • 22
    Jun 22nd
    0 Files
  • 23
    Jun 23rd
    0 Files
  • 24
    Jun 24th
    0 Files
  • 25
    Jun 25th
    0 Files
  • 26
    Jun 26th
    0 Files
  • 27
    Jun 27th
    0 Files
  • 28
    Jun 28th
    0 Files
  • 29
    Jun 29th
    0 Files
  • 30
    Jun 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close