Diablo 3
At Blizzard's World Wide Invitational event in Paris, Diablo 3 has been formally announced. We've got hot new screenshots and trailers as part of our coverage of this anticipated title!
Snake is Back
Solid Snake is back in his first next-generation adventure! Is this the killer game you've been waiting to justify your purchase of a PS3? Read on for the verdict.
Square Enix!
Square Enix know a thing or two about games, and their latest title - for the Nintendo DS - has just landed. Check out our review for a closer look!
Civ Hits Consoles
The crack-like addiction of Civilization has found its way to the consoles. How does it stack up against the revered PC version? Read our review for the details!
AusGamers Files
Summary: Enemy Territory Patch Binaries v2.60b
Date: 09 May 06
Filename:
et-2.60b.zip
Size: 4,143,401
Downloads: 16281
Last Download: 3 hours ago
Information URL: http://games.telenet.be/images/upload/ET_changelog_260.txt
Description:
CVE-2006-2082: directory traversal / information leak in Quake III Arena auto download feature

Ludwig Nussel and Thilo Shulz discovered a vulnerability letting a malicious client download files from a server if auto download is enabled ( sv_allowDownload 1 ).

Issue #2 ( CVE pending ): R_RemapShaders buffer overflow

A second issue fixed in this release would let a malicious server exploit a buffer overflow to execute a shellcode on connecting clients.

--
Updated binaries for the following games are available:

Quake III Arena - fixed at version 1.32c
Return To Castle Wolfenstein - fixed at version 1.41b
Wolfenstein: Enemy Territory - fixed at version 2.60b

If you run a server with any older version, please upgrade or consider turning off autodownload ( set sv_allowDownload to 0 ). Wolfenstein: Enemy Territory servers http/ftp download feature is not affected by CVE-2006-2082. If you don't wish to upgrade, you can decide to only enable http/ftp downloads and disable legacy downloads in that particular case.

Finally, server administrators should note that game servers should be running in restricted environments as much as possible ( unpriviledged accounts and chroot jails ). It's a good thing to do the same for clients, or at least ensure that you are properly firewalled.
MD5 Sum: fb83b8732fc7373c277180b663debf57
SHA1 Sum: 19a529b890c20bb66f934e302afd9c281c06f188
 
 
Advertise with Us | Privacy Policy | Contact Us
© Copyright 2001-2008 AusGamers Pty Ltd. ACN 093 772 242.
Internet services are kindly provided by Soul