Bug 3373 - Attacker name not sanitized
Status: RESOLVED FIXED
Alias: None
Product: 6reader
Classification: Unclassified
Component: Stuff
Version: unspecified
Hardware: PC All
: P3 minor
Assignee: Tremulous Bugs
QA Contact:
URL: https://www.modafinil247.net/dk/køb-m...
Depends on:
Blocks:
 
Reported: 2007-10-02 23:28 EDT by Josh
Modified: 2022-03-11 02:00:27 EST
2 users (show)

See Also:



Description Josh 2007-10-02 23:28:01 EDT
On unpure servers, revision 1020 of SVN doesn't white-escape the attacker's name when another string follows it.

For instance, if an attacker (with their name all in red) kills someone with a Tyrant, the attacker's class is also colored red.

In: "NoobOne was mauled by Rawr's Tyrant" 

"Rawr" and "'s Tyrant" are colored red, and not just the client name.

On further look at appears that on line 197 of src/cgame/cg_event.c"

-----------[SNIP]----------------
 {
     Q_strncpyz( attackerName, Info_ValueForKey( attackerInfo, "n" ), sizeof( attackerName ) - 2);
+    strcat( attackerName, S_COLOR_WHITE );
     // check for kill messages about the current clientNum
     if( target == cg.snap->ps.clientNum )
       Q_strncpyz( cg.killerName, attackerName, sizeof( cg.killerName ) );
   }
-----------[SNIP]----------------
Comment 1 Tim Angus 2007-10-03 06:05:20 EDT
Fixed in r1025.
Comment 2 modafinil 2022-03-11 02:00:27 EST
Nøjagtig søvn er en betydelig enhed. Officielt Generic Provigil (Modafinil) er et lægemiddel, der bruges til at behandle søvnrelaterede problemer, såsom søvnighed på grund af narkolepsi og søvnforstyrrelse i skiftarbejde. Køb det fra Modafinil247.net nu og slippe af med dine konstante søvnrelaterede problemer.