Dans le menu de maintenance, c'est écrit mettre à jour vers BaseJka 1.2.
Je suis tout de même pas fou

http://www.gamall-ida.com/f/download/file.php?id=432
If it's that bad, simply deactivate voting. Playing without vote is still better than a hostile server takeover.People keep attacking my server with it, rewriting my config.
The code I see here seems incomplete to me. I believe both \n and \r could be used as separators, as per humbaba's explanation. Yet this code only tests against \n. To be safe, I'd add a similar test for \r.
Hey !BSzili wrote:I know you stopped working on this mod, but aluigi discovered a very serious exploit, which allows you to change the server's rcon password, or any cvar via voting. http://aluigi.org/poc.htm#q3cbufexec
There's a fix for it too: http://bugzilla.icculus.org/attachment. ... ction=edit
People keep attacking my server with it, rewriting my config.Sadly other basejka versions (including 1.2) are vulnerable. Could you - by any chance include this fix it in your mod?
Err... are you a jk2 or jk3 user ? My patch is for jk3 only.K.I.T.T. Mace {L} wrote:"Client/Server game mismatch: basejk-1/basejka-1"
Yes, in the latest version (1.1a, I think). There is a whole topic about that.K.I.T.T. Mace {L} wrote:and does your fix also works for the forcecrash "/set forcepowers ..." (don't want to explain it exactly because maybe noobs use it after reading it^^) ??
I don't understand what you're saying here. KotF should be completely irrelevant to the discussion, it's yet another mod.K.I.T.T. Mace {L} wrote:we didn't want to update cause we have Knights of the Force, too, which is 1.01, but our problem is, that we can create a server, but it's not online and we don't know why...
Users browsing this forum: No registered users and 119 guests