Re: [hlds_linux] Re: dlfile exploit fix for 3110(maybe 3111 but not tested.

2003-12-10 Thread Muldy
Every time i load boffix the server starts in insecure mod(no VAC) Is there a way of still keeping VAC on ? Scott Loyd wrote: umm, Well I thaught I originally said it but for future versions I guess I will put a readme in there :) put this into your hlds_l dir(where engine_i386.so is); and in yo

Re: [hlds_linux] FreeBSD HL 3.1.1.1 Server setup and install - /proc/ trouble

2003-12-10 Thread m0gely
Jeramey James wrote: Trying to get a handle on a '/proc//stat' path problem after installing the HL Server v3.1.1.1 on a FreeBSD 5.1 system. location for the hlds_l dir is 'usr/compat/linux/games' I cannot seem to get the server to run with a constant debug with this error: Unable to open /proc/5

Re: [hlds_linux] ok who cancled my counter-server account

2003-12-10 Thread Nelson Marques
Yeap, guess we're all gay here, aren't all that happy today ? You just stood there screaming fearing no one was listening to you they say the empty can rattles the most the sound of your voice must soothe you hearing only what you want to hear and knowing only what you've heard you you're smothere

RE: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sindre
Yes, probably a mistake from your side, you didn't run a kernel patched against the latest brk() local root exploit, install 2.4.23 asap. - Sindre >= Original Message From "Sven" <[EMAIL PROTECTED]> = >Could be a mistake from our side... the kernel wasn't the newest, but we are >building

Re: [hlds_linux] ok who cancled my counter-server account

2003-12-10 Thread tlpitts
Nice way of asking to be Re-instated This is what gets you. If you have quality info to deliver then please do so in a mature way. Slander and name calling does not do you any good.you should be smart enought to figure that out. - Original Message - From: "FatDaddy" <[EMAIL PROTE

Re[2]: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Josephus
I'm using 2.4.23-grsec and 3110c-boffix everything is just fine :) S> Could be a mistake from our side... the kernel wasn't the newest, but we are S> building a new kernel at the moment... the only question is: what was the S> way the exploid uses to come on the system ? S> - Original

Re: [hlds_linux] Last machine power TEST

2003-12-10 Thread Kingsley Foreman
you should get better then that if u remove hlguard - Original Message - From: "knightazul" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, December 10, 2003 9:54 PM Subject: [hlds_linux] Last machine power TEST > P4 3060 1GB RAM DDR KLINSTON 333 DEBIAN 2.4.18 > 5 PUBLIC SERV

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sven
Could be a mistake from our side... the kernel wasn't the newest, but we are building a new kernel at the moment... the only question is: what was the way the exploid uses to come on the system ? - Original Message - From: "jwm" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday,

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Simon Garner
On Wednesday, December 10, 2003 10:51 PM NZT, jwm <[EMAIL PROTECTED]> wrote: > > Did you miss the news? And as i know there is still no bufix for 1.5 > That's a different problem, that only allows people to get the rcon_password. I'm guessing he was running v3.1.1.0, which had a remote code execu

[hlds_linux] Last machine power TEST

2003-12-10 Thread knightazul
P4 3060 1GB RAM DDR KLINSTON 333 DEBIAN 2.4.18 5 PUBLIC SERVER 11 SLOT FULL WITH ADMIN MOD HLGUARD Y WWCL LOAD 1.10 - 1.25 WITH 55 PLAYER 0.90 LOAD WITH 50 PLAYER Atentamente, H0StMaN_ReMhost | ReMhost | - Servicios de Internet http://www.remhost.net MSN: [EMAIL PROTECTED] IRC Hispano #remhost.n

[hlds_linux] howto micro temp stadist

2003-12-10 Thread knightazul
Sorry my terrible english sorry again Help me please i need stadist for the micro temp Atentamente, H0StMaN_ReMhost | ReMhost | - Servicios de Internet http://www.remhost.net MSN: [EMAIL PROTECTED] IRC Hispano #remhost.net /Q @H0StMaN_ReMhost IRC Quakenet #remhost.net /Q @H0StMaN_ReMhost Email

RE: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread jwm
Sven wrote: > The password for the console is definetly NOT in any log file > or something and totally different. > The rcon also was changed days before. I don't have any ideas... > > In fact that km3 (http://august.v-lo.krakow.pl/~anszom/km3.c) > was placed in the games

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sven
The password for the console is definetly NOT in any log file or something and totally different. The rcon also was changed days before. I don't have any ideas... In fact that km3 (http://august.v-lo.krakow.pl/~anszom/km3.c) was placed in the gameserver-directory and the user was the local custome

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sven
nope. All hlds-related processes like hlds, hltv or hlstats are all running as local customer accounts without root rights. - Original Message - From: "fingers" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, December 10, 2003 11:11 AM Subject: Re: [hlds_linux] root-exploit

RE: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread jwm
Sven wrote: > I already read that post. > But i'm talking about uploading files, not downloading them. Yes, but with this bug you can download also the logfiles, maybe some user has the same password for rcon and his account. Same for any plugin. Other possibility would

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sven
I already read that post. But i'm talking about uploading files, not downloading them. - Original Message - From: "jwm" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, December 10, 2003 10:51 AM Subject: RE: [hlds_linux] root-exploit through hlds? > Sven

Re: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread fingers
i sincerely hope you aren't running any of your hlds processes as root ___ To unsubscribe, edit your list preferences, or view the list archives, please visit: http://list.valvesoftware.com/mailman/listinfo/hlds_linux

RE: [hlds_linux] root-exploit through hlds?

2003-12-10 Thread jwm
Sven wrote: > Hello there! > [...] > Do anyone have an idea if there is a security hole on hlds > 1.5? Or maybe i'm on the wrong way. > > We have to set up that server again and would like to prevent > this next time. > > Thanks in advance, > > Sven Did you miss the news

Re: [hlds_linux] ok who cancled my counter-server account

2003-12-10 Thread Tristan
Must be some queer shortage? only 1/4 of the worlds IPs are in use -Tristan - Original Message - From: "Mad Scientist" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, December 10, 2003 6:57 PM Subject: Re: [hlds_linux] ok who cancled my counter-server account According to t

Re: [hlds_linux] ok who cancled my counter-server account

2003-12-10 Thread Joe Vaughan
FatDaddy wrote: No. You need to prove yourself mature enough to be a part of our community. Your response here is enough for me to have every account you create banned. Show a continued maturity and we will happily welcome you. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROT

[hlds_linux] root-exploit through hlds?

2003-12-10 Thread Sven
Hello there! Yesterday one of our 1.5 servers had a hacker attack. Someone have loaded up a root exploit "km3" to get root access on that server. This bloody program was started on the local customer account. The result was: passwd 1067 root6u IPv4 2301541 UDP ltf-home.gameserve