Topic: Severe issue: How to crash a server
Although I read many times that Server Crashers are no issue anymore on vanilla servers, I am still able to produce server crashes, both on mod servers and on vanilla servers (yes, I do have the newest version. I also checked it on online servers running vanilla mod).
It is such a HUGE security hole and you can reproduce it so easily (took me 1 minute to find out how to crash a server), it's really unbelievable.
Basically, every UDP packet betwen 3 and 5 bytes in size with random content crashes a running vanilla server.
I mean - why does this happen? Don't you do any validity checking on the packets that come in?
I didn't do further checking, but I think you could be able to do a buffer overflow using this technique which can lead to really serious security problems on your PC / server.
(Note: If any "authority" here reads this, understands it and thinks that this information is a threat / a help for script kiddies, you can edit my post to remove the "instructions". But anyone who is a tiny bit interested in crashing servers and who is capable of a little bit of programming can find this out in 1 minute.)
EDIT: I just realized this thread could belong to the support boards... Feel free to move it.