dch++ and nicknames

A private forum for us Super-Humans, I even trust you to be able to edit your own posts =)

Moderator: Moderators

Locked
Sedulus
Forum Moderator
Posts: 687
Joined: 2003-01-04 09:32
Contact:

dch++ and nicknames

Post by Sedulus » 2003-08-04 06:30

there seems to be a rather big flaw in dch++

nicknames are only checked from the start until strlen(realnick)

so, if I log in as "Se" I can write chat messages as "Sedulus"
...teh bad
(same goes for pm's, ctm's, pasvsearch..)
http://dc.selwerd.nl/hublist.xml.bz2
http://www.b.ali.btinternet.co.uk/DCPlusPlus/index.html (TheParanoidOne's DC++ Guide)
http://www.dslreports.com/faq/dc (BSOD2600's Direct Connect FAQ)

ivulfusbar
Posts: 506
Joined: 2003-01-03 07:33

Post by ivulfusbar » 2003-08-04 06:57

and you can also spoof PMs with others nick, i.e i can spoof a PM as,
$To cologic From: Sedulus $<Sedulus> woot.. fusbar is ivul.
Everyone is supposed to download from the hubs, - I don´t know why, but I never do anymore.

Locked