Pitch 20th October, 2004 01:31 AM

New bug in Counter Strike Source
Some of you may be aware of this but, there is a new bug plagueing CS:S servers worldwide.

It's a bug that crashes the server.

It results in an error message regarding 'memory that cannot be read'. So far, this has happened well over 10 times to me today, and without a fix from valve, there is nothingthat can be done.

Basically, any player who's name is '%n' that dies, kills the server too.

This bug has been around for a while, but has only began to be exploited within the last few days.

Aedan 20th October, 2004 12:13 PM

They have a format string bug in there? Oooh, I might have to grab a copy of CS:S and see if I can come up with some proof of concept code.

I wonder how other strings such as %x or %s would work?

[edit]Format string bugs are well known, and there are programming techniques to avoid them. In this day and age, there's no excuse for such sloppy programming.[/edit]

cadaveca 20th October, 2004 04:18 PM

it's gone.....updated last night.

fantomfreq 20th October, 2004 05:21 PM

Too bad. Aedan seemed real excited to exploit that bug!

cadaveca 20th October, 2004 05:28 PM

because you can change your name while on the server, there have been alot of the "%n", as well as script kiddies writing scripts that continuously change thier name...and lag everyone but themselves.

Daniel ~ 20th October, 2004 07:12 PM

Humans really do have a rough time finding them selfs don't they! When they suffer the impairment of being a scrip kiddie it's almost hopeless...

cadaveca 20th October, 2004 08:49 PM

meh...maybe it pushes security...I dunno..
It is a tad annoying to be in the middle of a good game, just to have someone pop on and kill it for everyone. But, because of the sheer number of servers available for CS:S, it's never hard to find another good one.
It seems as though they have not activated the AI in the game, and speculation it's to not "give away" any of the HL2 experience. While i can understand that reasoning, it's been a long time since i have owned a liscense to use the HL2 software, and legally had it on my PC, albeit in parts. The first HL was as innovative of a game as MYST was in it's day; I can hardly wait to try the next one, especially after seeing the physics work, and the visual more jaggy curves, no more poorly drawn characters...the game just oozes "Anime" to anime where you get to be the hero.
With these things in mind, these people can do whatever they want....I can always play it later.

