[CODE] Serious Money Bug , Revisited

From: Cajun (cajun@CATHOS.TELMARON.COM)
Date: 07/10/97


Okay... I got a log of all commands that were used in exploiting this bug.

=-=- Begin Log 0-0-

Thu Jul 10 14:50:11 :: (PlrLog) Wanker: 'save' in [3008] Gold: 480
Thu Jul 10 14:50:13 :: (PlrLog) Wanker: 'sc' in [3008] Gold: 480
Thu Jul 10 14:50:26 :: (PlrLog) Wanker: 'save' in [3008] Gold: 480
Thu Jul 10 14:50:30 :: (PlrLog) Wanker: 'give 480 coin daffy' in [3008] Gold: 480
Thu Jul 10 14:50:31 :: (PlrLog) Wanker: 'rent' in [3008] Gold: 0
Thu Jul 10 14:50:31 :: Wanker has rented.
Thu Jul 10 14:50:33 :: Wanker [XXX.XXX.XXX.XXX] has connected.
Thu Jul 10 14:50:33 :: Losing descriptor without char.
Thu Jul 10 14:50:35 :: Wanker un-renting and entering game.
Thu Jul 10 14:50:36 :: (PlrLog) Wanker: 'sc' in [3001] Gold: 480
Thu Jul 10 14:50:45 :: (PlrLog) Daffy: 'sc' in [3008] Gold: 480


Thu Jul 10 14:51:39 :: (PlrLog) Wanker: 'save' in [3008] Gold: 960
Thu Jul 10 14:51:49 :: (PlrLog) Wanker: 'save' in [3008] Gold: 960
Thu Jul 10 14:51:56 :: (PlrLog) Wanker: 'give 960 coin daffy' in [3008] Gold: 960
Thu Jul 10 14:51:56 :: (PlrLog) Wanker: 'rent' in [3008] Gold: 0
Thu Jul 10 14:51:56 :: Wanker has rented.
Thu Jul 10 14:52:00 :: Wanker [XXX.XXX.XXX.XXX] has connected.
Thu Jul 10 14:52:00 :: Losing descriptor without char.
Thu Jul 10 14:52:01 :: Wanker un-renting and entering game.
Thu Jul 10 14:52:08 :: (PlrLog) Wanker: 'sc' in [3008] Gold: 960
Thu Jul 10 14:52:15 :: (PlrLog) Daffy: 'give 960 coin wanker' in [3008] Gold: 960


Notice how the character who rents saves twice (between 7 and 10 seconds
apart), rents, then re-enters with gold that he shouldn't have.  Also
notice the "Losing descriptor without char." log entry.  The only way I can
figure that happening is if he stays in the menu, then relogs in without
pressing 0.  I can try to duplicate the bug, and can match this log
exactly, but I cannot seem to do it.

ANY ideas at all would be appreciated.

Bananaman, CajunMUD imp.
cajun.telmaron.com 6250


      +-----------------------------------------------------------+
      | Ensure that you have read the CircleMUD Mailing List FAQ: |
      |   http://cspo.queensu.ca/~fletcher/Circle/list-faq.html   |
      +-----------------------------------------------------------+



This archive was generated by hypermail 2b30 : 12/08/00 PST