Luigi Auriemma

aluigi.org (ARCHIVE-ONLY FORUM!)
It is currently 19 Jul 2012 15:03

All times are UTC [ DST ]





Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 
Author Message
 Post subject: q3cfilevar
PostPosted: 30 Dec 2009 17:28 

Joined: 30 Dec 2009 17:11
Posts: 2
I am trying to get this (http://aluigi.altervista.org/adv/q3cfilevar-adv.txt) proof-of-concept working on a Cod4 server. I tried to use the "q3cfilevar_132c.lpatch" ,but have had no success.
I also tried to find the offsets using OpSearcher, again had no success.

Is
it possible to get, the bug [B] ("cvars overwriting with possible information stealing") working on a Call of Duty 4 1.7 Server ?

I could use a hand here :)


Top
 Profile  
 
 
 Post subject: Re: q3cfilevar
PostPosted: 30 Dec 2009 19:01 

Joined: 13 Aug 2007 21:44
Posts: 4068
Location: http://aluigi.org
the PoC I released is 100% specific for that version of Quake 3 Arena specified in it because it's just the rewrite of some pieces of assembly code... I guess I was more crazy than usual that day or had just nothing else better to do :)

so, for answer to your question, you can do anything IF cod4 is still vulnerable (99% yes) but I can't help in no way


Top
 Profile  
 
Display posts from previous:  Sort by  
Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 

All times are UTC [ DST ]


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for: