[36938] in bugtraq
Format String Vulnerability in Valve's CS-Source
daemon@ATHENA.MIT.EDU (Some One)
Thu Oct 14 19:21:50 2004
Date: 13 Oct 2004 15:48:26 -0000
Message-ID: <20041013154826.13068.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Some One <mc.iglo@ddclan.de>
To: bugtraq@securityfocus.com
Hi,
if u type '%n' (without ') to in-game-console, your game crashes instantly.
So far, i was not able, to do this remotely with rcon %n e.g., but this does not mean, it is not possible.
Valve also got informed.
P.S. i want the old CS-betas back, where you needed skill instead of luck to hit the enemys head