Good point there Adam, i didnt think about it from this point of view.
If you allow your clients to install their own plugins, its a problem.
However, you could make the addons read only and install the plugins
your clients are requesting yourself.. you could use as a temporarely
solution.

In my opinion, this plugin should have never been made like this. Its
a security risk itself containing an exploit and no programmer should
do release this kind of  plugins.

-ics

How am I supposed to protect the machine that handles many customer
servers from executing arbitrary commands ?
Can you tell me that ? Or how am I supposed to tell them what plugins
to install and what plugins not to install ?

regards,
Adam Grzesko
[EMAIL PROTECTED]


_______________________________________________
To unsubscribe, edit your list preferences, or view the list archives, please 
visit:
http://list.valvesoftware.com/mailman/listinfo/hlds_linux

Reply via email to