Author Topic: Is this the URL that crashed my client?  (Read 2925 times)

0 Members and 1 Guest are viewing this topic.

Offline scripter

  • Regular
  • **
  • Posts: 88
  • Karma: +2/-0
    • View Profile
Is this the URL that crashed my client?
« on: October 05, 2008, 09:58:40 AM »
I found this link on a web site, clicked it and my client crashed, or stopped, I'm not sure which one.

The link said "people showing things you shouldn't see, click here", so I clicked on it, I couldn't see the underlying actual link, or wasn't paying attention because there were a lot of other OFF links on the page.

I was running the latest version, 0.19.32

The real, actual underlying link was.......

http://localhost:23402/index.htm?shutdown

:)

While we're on the subject, I also clicked on a search result with a filename of

"\Windows\System\some_important_file.dll"

No one could ever fake search returns, right?

"we can avoid the expense of checking the filenames of srch results"

Not a good idea.

Offline Nemo

  • Global Moderator
  • Elite
  • *****
  • Posts: 1303
  • Karma: +27/-0
    • View Profile
Re: Is this the URL that crashed my client?
« Reply #1 on: October 05, 2008, 04:18:35 PM »
I found this link on a web site, clicked it and my client crashed, or stopped, I'm not sure which one.

The link said "people showing things you shouldn't see, click here", so I clicked on it, I couldn't see the underlying actual link, or wasn't paying attention because there were a lot of other OFF links on the page.

I was running the latest version, 0.19.32

The real, actual underlying link was.......

http://localhost:23402/index.htm?shutdown

:)

This wasn't a client crash, it's a correct shutdown initiated by the fooled user...  ::)
With newest OFF version it's possible to shutdown OFF by opening the mentioned URL.

Quote from the latest OFF version announcement:
Quote
Changes:
0.19.32

ADDED:

Implemented a web interface shutdown command for when OFF is running in
gui mode: "http://localhost:23402/index.htm?shutdown" should close the client.


I don't know if it's user's fault for clicking on such URLs, or if OFF should return a website with a button "are you shure?", or a button "cancel shutdown; without your interaction OFF will shutdown in 10s"...  ::)

Greetings,
Nemo.