SA-MP Forums

Go Back   SA-MP Forums > SA-MP DL Edition > SA-MP 0.3.DL

Closed Thread
 
Thread Tools Display Modes
Old 04/11/2017, 10:58 PM   #21
Misomir
Little Clucker
 
Join Date: Jul 2017
Posts: 21
Reputation: 0
Default Re: 0.3.8 Security Issue

It mustn't be RAT,it could be ANYTHING,!!
Misomir is offline  
Old 04/11/2017, 11:00 PM   #22
SlowARG
Little Clucker
 
Join Date: Feb 2014
Posts: 43
Reputation: 14
Default Re: 0.3.8 Security Issue

Quote:
Originally Posted by maksicnm View Post
ITS A REASON CUZ THERE IS NO LINUX VERSION OMFG -_-

0.3.8 will certainly not be for a longer period of time on Linux because it is possible to insert a RAT virus into a file and destroy someone who enters the server, so the current version of Windows is currently running and who can run over it server players can enter that server if they believe in it server, the update is well done, I have been planning to let this be among many others in order to improve the launcher for models, it would be nice if this would be released to the end, along with all the vehicles and other things (antique type and so )

Quoted from Balcan forum.
Aren't you serius, really?
SlowARG is offline  
Old 04/11/2017, 11:03 PM   #23
maksicnm
Big Clucker
 
Join Date: Sep 2016
Location: Serbia
Posts: 118
Reputation: 3
Default Re: 0.3.8 Security Issue

Learn programing, thx
maksicnm is offline  
Old 04/11/2017, 11:05 PM   #24
MyU
Little Clucker
 
Join Date: Apr 2013
Posts: 33
Reputation: 18
Default Re: 0.3.8 Security Issue

Calm it down.
IF then you're only able to drop non-dff files, SA-MP itself doesn't treat it as a executable.

Like I said the only apparent way would be some sort of exploit in the file format itself to execute arbitrary code like we had on the TD system back then.
__________________
Project(s): SA-MP Textures :: All GTA:SA Textures Online!
Github
MyU is offline  
Old 04/11/2017, 11:06 PM   #25
cuber
Gangsta
 
cuber's Avatar
 
Join Date: Oct 2016
Location: CookieDM - https://discord.gg/p7ahv8s
Posts: 920
Reputation: 171
Default Re: 0.3.8 Security Issue

Scared to death, omg what me gon do
cuber is offline  
Old 04/11/2017, 11:08 PM   #26
Y_Less
Beta Tester
 
Y_Less's Avatar
 
Join Date: Jun 2008
Location: 629 - git.io/Y
Posts: 15,693
Reputation: 3226
Default Re: 0.3.8 Security Issue

That's not how any of this works!

A file downloaded by the game is passed to GTA's DFF file parser. If the file is an executable, it is not just randomly run, instead the game will still try and interpret it as a model, and probably fail. Think of it this way - if you download an EXE, then try and open that file from notepad, it doesn't RUN the file, just shows you the contents. Or an even better example is a BAT file - which you can happily read from inside notepad without ever executing it.

BAT, RAT, EXE, it doesn't matter; they won't be run, because they are never told to run. Instead, they are loaded as models.

HOWEVER, this is NOT the same as the warning Kalcor gave about models themselves with embedded issues. GTA was originally a single-player game with no modding. This meant that all the files it was ever intended to load were the models provided with the game. Therefore certain checks could possibly be skipped, because it was known that all the objects were always valid. Without those checks in place, a well crafted model could MAYBE inject code. However, I say again, THIS IS NOT THE SAME AS JUST RENAMING AN EXE. To the best of my knowledge, there are no known DFF exploits, but I've also not followed the modelling side of things very closely for a few years now.

Quote:
Originally Posted by Misomir View Post
It will open file and when SAMP realize thats not required file it will crash.But,the file is opened which executes program(in theory)
No, not in any theory at all.

Quote:
Originally Posted by MyU View Post
Reading the file != parsing & loading a PE.
^ This is correct.

If you are STILL worried then a) you're an idiot (unless you've truly found an exploit in the DFF file parser itself) and b) test it with a non-destructive batch script, maybe one that just touches a file.
Y_Less is online now  
Old 04/11/2017, 11:11 PM   #27
Misomir
Little Clucker
 
Join Date: Jul 2017
Posts: 21
Reputation: 0
Default Re: 0.3.8 Security Issue

Hmm...maybe ur right...But still i wanna test it
Misomir is offline  
Old 04/11/2017, 11:14 PM   #28
SlowARG
Little Clucker
 
Join Date: Feb 2014
Posts: 43
Reputation: 14
Default Re: 0.3.8 Security Issue

Quote:
Originally Posted by Y_Less View Post
Therefore certain checks could possibly be skipped, because it was known that all the objects were always valid. Without those checks in place, a well crafted model could MAYBE inject code.
I remember a bug in MTA custom models parser.
However, all .txd and .dff files are renamed when downloaded, so isn't a problem at all. Maybe RCE could exists.

Quote:
Originally Posted by maksicnm View Post
Learn programing, thx
Oh man, really? Stop saying st**ids things please.
SlowARG is offline  
Old 04/11/2017, 11:15 PM   #29
cuber
Gangsta
 
cuber's Avatar
 
Join Date: Oct 2016
Location: CookieDM - https://discord.gg/p7ahv8s
Posts: 920
Reputation: 171
Spray Re: 0.3.8 Security Issue

Quote:
Originally Posted by Misomir View Post
Hmm...maybe ur right...But still i wanna test it
What's up with this now, since Y_Less replied.

Quote:
Originally Posted by maksicnm View Post
Learn programing, thx
cuber is offline  
Old 04/11/2017, 11:18 PM   #30
Misomir
Little Clucker
 
Join Date: Jul 2017
Posts: 21
Reputation: 0
Default Re: 0.3.8 Security Issue

I still believe in MY theory cuz i think SAMP is opening em comlete but maybe it isnt.
Misomir is offline  
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Unoccupied vehicle sync, boat surfing pausing issue, parachute with vehicle issue, surfing w/ skydiving issue Kar Bug Reports 2 10/06/2013 10:24 AM
Security issue with Y_INI + Dialog reg system. caki Scripting Help 0 27/11/2012 03:31 PM
Harmfull security issue (server-sided UDP floods) ExoSanty Bug Reports 7 07/03/2012 10:04 PM
E-Mail Adress or another way to report a major security issue Seoson Server Support 4 08/01/2012 10:06 PM
security cam id akis_tze Help Archive 3 08/02/2010 02:36 PM


All times are GMT. The time now is 02:55 PM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2019, Jelsoft Enterprises Ltd.