Titel: UT3 hacks Besked af: Geddeth på 13. September '08 kl. 22:28 En lidt interessant mail-udveksling fandt sted i dag på den officielle UT3 server mailingliste (forkortet af redaktionen):
Citat Subject: [ut3servers] Server termination From: "[PHX]Big_Deal" <admin@PHOENIX-4EVER.DE> Date: Sat, 13 Sep 2008 16:04:18 +0200 To: <UT3SERVERS@LIST.EPICGAMES.COM> Hi Today my server shut down allready 3 times with this error Critical: appError called: Critical: Ran out of virtual memory. To prevent this condition, you must free up more space on your primary hard disk. Critical: Windows GetLastError: Falscher Parameter. (87) Log: === Critical error: === Ran out of virtual memory. To prevent this condition, you must free up more space on your primary hard disk. ... The attack can be performed versus the server using one simple UDP packet with the possibility of spoofing it. We need a urgent fix! -- [PHX]Big_Deal Leader and Admin Citat Subject: Re: [ut3servers] Server termination From: David Hurren <thunderfox19899@GMAIL.COM> Date: Sat, 13 Sep 2008 15:34:03 +0100 To: <UT3SERVERS@LIST.EPICGAMES.COM> GUYS PLEASE FIX THIS both of my servers went down today by the same person the IP that might of took it down was 78.92.72.50 Citat Subject: Re: [ut3servers] Fw: [ut3servers] Server termination From: Sir_Brizz - BeyondUnreal <sir_brizz@BEYONDUNREAL.COM> Date: Sat, 13 Sep 2008 09:38:29 -0600 To: <UT3SERVERS@LIST.EPICGAMES.COM> This guy is a real piece of work. He continues to find exploits, create code to exploit them, and then proceed to post it all over the web. What a dickface. Brizz Citat Subject: [ut3servers] AW: [ut3servers] Server termination From: Christian Ackermann ut-X.net Administration <info@UT-X.NET> Date: Sat, 13 Sep 2008 18:25:29 +0200 To: <UT3SERVERS@LIST.EPICGAMES.COM> Yes ... this son of a bitch use the exploit to crash all our ut2004 servers :/ Use this for the moment iptables -A INPUT -s 78.92.72.50 -j DROP Citat Subject: Re: [ut3servers] Fw: [ut3servers] Server termination From: Donzi|UTzone.de <donzi@UTZONE.DE> Date: Sat, 13 Sep 2008 17:16:50 +0200 To: <UT3SERVERS@LIST.EPICGAMES.COM> More Information about the exploids: https://aluigi.org/adv/ut3sticle-adv.txt https://aluigi.org/adv/unrealcfs-adv.txt https://aluigi.org/adv/ut3mendo-adv.txt https://aluigi.org/adv/ut2004null-adv.txt ------------ Christopher Lotz ( Donzi ) UTzone.de Admin Citat Subject: Re: [ut3servers] Fw: [ut3servers] Server termination From: Stacey Conley <stacey.conley@EPICGAMES.COM> Date: Sat, 13 Sep 2008 12:31:05 -0400 To: <UT3SERVERS@LIST.EPICGAMES.COM> I'll try to get in touch with Jeff, thanks guys. In the mean time please block 78.92.72.50 from your firewalls. Stacey Conley ----------------------- Community Support Epic Games Citat Subject: Re: [ut3servers] AW: [ut3servers] Server termination From: Sir_Brizz - BeyondUnreal <sir_brizz@BEYONDUNREAL.COM> Date: Sat, 13 Sep 2008 13:20:53 -0600 To: <UT3SERVERS@LIST.EPICGAMES.COM> Let our wonderful friend Luigi know of your undying love for his work as a "researcher" (aka hack writer) at aluigi@autistici.org. Brizz Citat Subject: Re: [ut3servers] AW: [ut3servers] Server termination From: Hedsteem <hedsteem@HEDSTEEM.COM> Date: Sat, 13 Sep 2008 16:02:14 -0400 To: <UT3SERVERS@LIST.EPICGAMES.COM> Im signing that douche up for every fucking mailing list in the world. Titel: Sv: UT3 hacks Besked af: Wishbone på 13. September '08 kl. 22:55 Citat Subject: Re: [ut3servers] AW: [ut3servers] Server termination From: Hedsteem <hedsteem@HEDSTEEM.COM> Date: Sat, 13 Sep 2008 16:02:14 -0400 To: <UT3SERVERS@LIST.EPICGAMES.COM> Im signing that douche up for every fucking mailing list in the world. My personal favourite :D Hvor intelligent en hacker er man, hvis man altid opererer fra den samme IP adresse, og ovenikøbet praler af det på nettet, samtidig med at man fortæller hele verden sin email adresse? ??? Titel: Sv: UT3 hacks Besked af: Quantumfan på 17. September '08 kl. 17:21 Citat Subject: Re: [ut3servers] AW: [ut3servers] Server termination From: Hedsteem <hedsteem@HEDSTEEM.COM> Date: Sat, 13 Sep 2008 16:02:14 -0400 To: <UT3SERVERS@LIST.EPICGAMES.COM> Im signing that douche up for every fucking mailing list in the world. My personal favourite :D Hvor intelligent en hacker er man, hvis man altid opererer fra den samme IP adresse, og ovenikøbet praler af det på nettet, samtidig med at man fortæller hele verden sin email adresse? ??? Titel: Sv: UT3 hacks Besked af: Geddeth på 25. September '08 kl. 07:37 En interessant opdatering:
Citat Subject: [ut3servers] UT3 and UT2004 Linux exploit fixes From: "Josh Adams" <Josh.Adams@EPICGAMES.COM> Date: Wed, September 24, 2008 23:40 We have new exploit-fixing executables for UT3 and UT2004 Linux dedicated server executables with the recent server exploits fixed. The UT3 server is still beta until you guys give this a stamp of approval (at which time we'll roll out the full official 1.3 release). UT3 executable addresses this: https://aluigi.org/adv/ut3sticle-adv.txt UT2004 has fixes for these: https://aluigi.org/adv/unreaload-adv.txt https://aluigi.org/adv/ut2004null-adv.txt Citat From: UT3 Servers [mailto:UT3SERVERS@LIST.EPICGAMES.COM] On Behalf Of Sir Brizz Sent: Wednesday, September 24, 2008 5:49 PM Subject: Re: [ut3servers] UT3 and UT2004 Linux exploit fixes Has there been an update to the Linux DS that fixes the custom content problems? Citat Subject: Re: [ut3servers] UT3 and UT2004 Linux exploit fixes From: "Josh Adams" <Josh.Adams@EPICGAMES.COM> Date: Wed, September 24, 2008 23:59 Yep, this has been fixed. Josh Og en kommentar fra Ryan C. Gordon (ham som laver al Epic's beskidte arbejde på Linux): Citat Subject: Re: [ut3servers] UT3 and UT2004 Linux exploit fixes From: "Ryan C. Gordon" <icculus@ICCULUS.ORG> Date: Thu, September 25, 2008 07:38 Please watch UT2004 especially carefully. It has moved to a new major version of GCC, which changed a LOT of things. Getting the legacy codebase to build was proving non-trivial, so it's more than a few opcodes worth of changes under the hood. Although it might turn out to be more efficient now. :) The UT3 build has the Luigi exploit fixes and (hopefully!) all the other issues from the 1.3 beta patch resolved, including that pesky FileWriter bug. If you see any problems, please speak up loudly so we can get this out of non-beta status ASAP. Thanks, --ryan. Den FileWriter bug, som Ryan hentyder til, er den som gør at vi ikke kan få statistik på UT3 serveren. Så snart den er fixet, så har Panther fra UTStatsDB en ny version liggende klar, som understøtter UT3. Udover ovenstående, så har Epic også i går frigivet en ny patch til PS3 versionen af UT3, og i dag har de så udgivet en version af UT3 serveren, som understøtter PS3-klienter (men ikke PS3 vs. PC play pga. forskellige gamerate). Når de endelig rykker, så gør de det sgu også! :-\ Men under alle omstændigheder, så tyder det på, at vi snart får mulighed for at køre med custom content på serveren OG køre stats på den. Det kan jo gøre en stor forskel for gameplay til UT3 events.. /g Titel: Sv: UT3 hacks Besked af: Wishbone på 25. September '08 kl. 12:34 Men under alle omstændigheder, så tyder det på, at vi snart får mulighed for at køre med custom content på serveren OG køre stats på den. Det kan jo gøre en stor forskel for gameplay til UT3 events.. Det er også tiltrængt. Vi var kun 4 til sidste UT3 event. Der er nogle ekstremt fede våben, maps og mods derude. Jeg tror virkelig det kunne sparke liv i det igen. Det kan være vi skal begynde at samle en content pakke, til når det bliver aktuelt. |