Halflife: [GoldSrc] SV_ParseConsistencyResponse vulnerability

Created on 27 Sep 2020  路  3Comments  路  Source: ValveSoftware/halflife

Screenshot_2

Users can exploit this by sending a fake clc_fileconsistency with length <= 0, causing hlds to close.
Sys_Error should be replaced with Con_Printf/Con_DPrintf.

Most helpful comment

The client should also be dropped from the server if this happens.

All 3 comments

The client should also be dropped from the server if this happens.

Same for _SV_ParseMove_:

image

@kisak-valve
This issue needs to be tracked at ToDO list

Was this page helpful?
0 / 5 - 0 ratings

Related issues

perforatorRU picture perforatorRU  路  3Comments

perforatorRU picture perforatorRU  路  3Comments

LuckyStrikeOriginal picture LuckyStrikeOriginal  路  4Comments

WhiteFang1319 picture WhiteFang1319  路  3Comments

zp picture zp  路  4Comments