R4P3 TeamSpeak Server Crash [ till 3.0.12.4-Beta 1 ]

Status
Not open for further replies.

Jamie

Member
Joined
Nov 30, 2015
Messages
14
Reaction score
5
Points
35
Is it possible to give you guys certain servers to make sure ours don't get hit?
 

0x0539

Retired Staff
Contributor
Joined
Jan 30, 2016
Messages
1,334
Reaction score
1,146
Points
254
Is it possible to give you guys certain servers to make sure ours don't get hit?
The file is not public so you should'nt get hit. (yet)
 

0x0539

Retired Staff
Contributor
Joined
Jan 30, 2016
Messages
1,334
Reaction score
1,146
Points
254
Damn,

Good option to add "blacklist" with ip's servers from vip users to this crasher:D
If that list would get exposed everyone would be fucked. So, no from me.
 

0x0539

Retired Staff
Contributor
Joined
Jan 30, 2016
Messages
1,334
Reaction score
1,146
Points
254
He added this a day after the post.
 

Qraktzyl

Retired Staff
Contributor
Joined
Nov 2, 2015
Messages
997
Reaction score
723
Points
161
We are still discussing if we are going to release this or not. No ETA.
 

Laszl0w

Well-Known Member
Joined
Oct 10, 2015
Messages
217
Reaction score
149
Points
143
I think you can release it after its fixed by TeamSpeak Systems GmbH just like other releases.
 

Laszl0w

Well-Known Member
Joined
Oct 10, 2015
Messages
217
Reaction score
149
Points
143
This will be not working because lot of people running servers on linux.
 

JackMeoff

Member
Joined
Jun 26, 2015
Messages
13
Reaction score
0
Points
35
You have got to be kidding ... first of all, using Firefox ESR (the latest Firefox for [CentOS 32-bit] Linux, these Vimeo videos will not play; I had to download it via Yoo something or other online converter ... I got the highest quality (1900x1080) and can barely even see what whomever is doing to demonstrate this. ... Useless.

If you're going to do POC videos, make them easier to see .. maybe use a focus feature that focuses on whereever the mouse cursor is ... this feature is built in to newer versions of Camtasia Studio and is probably in other software as well.

"Jack".

Now a little bit of storry first:
We contacted TeamSpeak on 2/March that we did find a new vulnerability in TeamSpeak Server 3.0.12.2. Since they released 3.0.12.3 today, they might think they're secure. Well, as you can see below... they are really not.
We will release the exploit in about one week if TeamSpeak doesnt reply to our Email. (Only reply, not fixing anyting). Seems fair to me.

So here you've got the PoC video for version 3.0.12.3, released today (4/March/2016). The video only shows 3.0.12.3, but it also works for all versions below 3.0.12.3

Credits go to: @Kaptan647 @Derp @ehthe @Asphyxia @Supervisor


/Update: TeamSpeak did reply to us, so we might not release the exploit in one week. We'll see.
 

0x0539

Retired Staff
Contributor
Joined
Jan 30, 2016
Messages
1,334
Reaction score
1,146
Points
254
You have got to be kidding ... first of all, using Firefox ESR (the latest Firefox for [CentOS 32-bit] Linux, these Vimeo videos will not play; I had to download it via Yoo something or other online converter ... I got the highest quality (1900x1080) and can barely even see what whomever is doing to demonstrate this. ... Useless
"Jack".
Lmao, blaming our video for sucking while your usage of OS and programs are the ones sucking.
 

0x0539

Retired Staff
Contributor
Joined
Jan 30, 2016
Messages
1,334
Reaction score
1,146
Points
254
I can tell you what he does, he enters an IP, clicks a button and server goes down. x)
 
Status
Not open for further replies.
Top