[cod] Vulnerability if auto download is enabled on cod/coduo servers?

Christian satanic.surfer.666 at web.de
Thu May 18 08:32:15 EDT 2006


Hi!

ID fixes 2 vulnerabilities in the patches for Q3A, RTCW and ET. In one 
vulnerability the client was affected, in one vulnerability the server 
as you can see in this advisory:

http://secunia.com/advisories/19984/

--
Chris



Andre Lorbach schrieb:
>> -----Original Message-----
>> From: Brian Dessent [mailto:brian at dessent.net] 
>> Sent: Thursday, May 18, 2006 2:02 PM
>> To: cod at icculus.org
>> Subject: Re: [cod] Vulnerability if auto download is enabled 
>> on cod/coduo servers?
>>
>> Dave Whitney wrote:
>>
>>     
>>> So, what version of Q3 Arena did IW use to base CoD on?  If 
>>>       
>> they used 
>>     
>>> 1.32c or above, we're all in the clear.
>>>       
>> Uh, the Q3 1.32c patch was released just 10 days ago.
>>     
>
> I have posted info about this 2 weeks ago in this list. With the usual
> lack of interest. 
> If my understanding is right, all Clients based on Quake 3 engine need
> to be patched, not the servers.
>
> --
> deltaray
>
>   



More information about the Cod mailing list