|
|
|
[
Permlink
| « Hide
]
Lex Neva added a comment - 01/Apr/07 08:50 AM
Whoops, that comment was intended for another issue. Only Lindens can delete comments, as well.
Oh dear. This is terrible.
I think you made a bad choice in reporting it here, though. There's a special private method for high risk security issues. Posting about it here will help it get resolved faster, I'm sure, but it also allows all the griefers to know this can be done. /me is worried The thing is, they already do. Most of us don't. There's also the fact that it IS possible to defend yourself against this: never have items on your plot that are not owned by the plot owner or set to the group. If you follow that rule, this bug does not hurt you.
[15:35] Soft Linden: (clarified the issue title as well)
[15:36] WarKirby Magojiro: Oh dear [15:36] WarKirby Magojiro: this one is important [15:36] Solomon Draken: Yes [15:36] Solomon Draken: This is a serious issue [15:37] Rob Linden: k...I'll import [15:37] WarKirby Magojiro: surely only the most recent objects should be returned first [15:37] Saijanai Kuhn: asynchronous communicatin, including item returns [15:37] Ashcroft Burnham agrees with Warkiby [15:38] SignpostMarv Martin: how long does it take to backup the content in a region ? [15:38] Soft Linden: I've not seen this type of attack, but we can ask gteam if they've seen it. [15:38] Rob Linden: next up: [15:38] Tomcat BnT: Can every sim have a binary log for the no-copy items in the uploading queue? [15:38] Ashcroft Burnham: Indeed. wouldn't a solution be a per-sim prims rezzed per minute limit? [15:38] Saijanai Kuhn: evenif you prioritize, there's no guarantee of when an item gets returend [15:39] Tomcat BnT: that binary log should be on disk when returning and the algorithm for choosing items to return should favour copyable items [15:39] SignpostMarv Martin: e.g. if expected object return rate reaches a set level, could a backup of the sim not be ran prior to object return ? [15:39] Tomcat BnT: or having the upload queue as a transaction on disk [15:39] SignpostMarv Martin: ^that'd lower the risk of total content loss This appears to still be current. We experienced content loss with an event matching this description requiring a sim rollback. '000s of prims rezzed in a very short time frame, Existing content was returned due to full sim, and a sim crash was involved.
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||