Mojira Archive
MC-250069

Multiplayer server crash exploit with Lectern

This Youtube video https://www.youtube.com/watch?v=SvdO8ZSHQdo describes an exploit to crash Paper servers via an exploit abusing Lecterns. I operate a public multiplayer server running the 1.18.2 vanilla jar, tested to confirm whether this exploit also works on vanilla (mojang jar) and noted it crashed the server when executed. One malicious player has already exploited this vulnerability and crashed my server earlier today.

The code to the client-side fabric mod to run the crash is published at https://github.com/Coderx-Gamer/lectern-crash

Duplicate

Ajay Ramjatan

2022-04-09, 04:59 PM

2022-04-13, 07:34 AM

2022-04-13, 07:34 AM

0

1

Plausible

(Unassigned)

1.18.2

-