Raised This Month: $ Target: $400
 0% 

Security Advisory: LFI exploit in SourceBans 1.4.*


Post New Thread Reply   
 
Thread Tools Display Modes
Peace-Maker
SourceMod Plugin Approver
Join Date: Aug 2008
Location: Germany
Old 12-07-2014 , 05:54   Re: Security Advisory: LFI exploit in SourceBans 1.4.*
Reply With Quote #11

Thanks for pointing that out, jsifuentes. What went wrong with contacting the development team first before publishing details?

It's fixed in the SVN r165.

@Sarabveer
Please don't mix official release numbers with forks. There is no SB 1.4.12. People will only get confused when there is an official 1.4.12, if they aren't already.
__________________
Peace-Maker is offline
Sarabveer
Veteran Member
Join Date: Feb 2014
Old 12-07-2014 , 15:17   Re: Security Advisory: LFI exploit in SourceBans 1.4.*
Reply With Quote #12

Quote:
Originally Posted by Peace-Maker View Post
Thanks for pointing that out, jsifuentes. What went wrong with contacting the development team first before publishing details?

It's fixed in the SVN r165.

@Sarabveer
Please don't mix official release numbers with forks. There is no SB 1.4.12. People will only get confused when there is an official 1.4.12, if they aren't already.
Please recommend a numbering scheme.
__________________
Sarabveer is offline
DarkDeviL
SourceMod Moderator
Join Date: Apr 2012
Old 12-14-2014 , 10:38   Re: Security Advisory: LFI exploit in SourceBans 1.4.*
Reply With Quote #13

Quote:
Originally Posted by Sarabveer View Post
Please recommend a numbering scheme.
Considering how development releases often have '-dev' or '-git' in the end for the bleeding edge releases, how about something like this?

1.4.11-sarabveer

1.4.11-sarabveer1
1.4.11-sarabveer2
1.4.11-sarabveer3

1.4.11-sarabveer1.0
1.4.11-sarabveer1.1
1.4.11-sarabveer1.2

The phrase 'sarabveer' could eventually be shortened to 'sara'.

Just a thought.
__________________
Mostly known as "DarkDeviL".

Dropbox FastDL: Public folder will no longer work after March 15, 2017!
For more info, see the [SRCDS Thread], or the [HLDS Thread].
DarkDeviL is offline
Dr. Greg House
Professional Troll,
Part-Time Asshole
Join Date: Jun 2010
Old 12-14-2014 , 13:35   Re: Security Advisory: LFI exploit in SourceBans 1.4.*
Reply With Quote #14

Quote:
Originally Posted by Peace-Maker View Post
[...]People will only get confused when there is an official 1.4.12, if they aren't already.
inb4 saxton hell PH.
__________________
Santa or Satan?

Watch out when you're paying people for private requests! Most stuff already exists and you can hardly assess the quality of what you'll get, and if it's worth the money.
Dr. Greg House is offline
Sarabveer
Veteran Member
Join Date: Feb 2014
Old 12-14-2014 , 17:50   Re: Security Advisory: LFI exploit in SourceBans 1.4.*
Reply With Quote #15

Quote:
Originally Posted by arne1288 View Post
Considering how development releases often have '-dev' or '-git' in the end for the bleeding edge releases, how about something like this?

1.4.11-sarabveer

1.4.11-sarabveer1
1.4.11-sarabveer2
1.4.11-sarabveer3

1.4.11-sarabveer1.0
1.4.11-sarabveer1.1
1.4.11-sarabveer1.2

The phrase 'sarabveer' could eventually be shortened to 'sara'.

Just a thought.
meh

ill stay with this

1.4.13-fork
__________________
Sarabveer is offline
Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 15:22.


Powered by vBulletin®
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Theme made by Freecode