Jump to content

Recommended Posts

Posted

Dear Extraordinary Survivalists 
v1.20.6, a stable release, can now be downloaded through the account manager.

We suggest to urgently update all game servers to this latest version, as all game versions of the last 6 years are affected. An issue was discovered which could allow a player to create arbitrary blocks and items, including Command Blocks which can run arbitrary server commands under admin privileges. This release should both fix the creation of arbitrary items as well as the ability to use Command Blocks as a Survival Mode player. Only the servers need to update. The game clients can remain on 1.20.5.
To clarify: This vulnerability only affected server commands via Command Blocks, not via the underlying server console / shell.

Game updates

  • Tweak: Don't print audit logs to console, but to debug window only
  • Fixed: Gameserver privilege escalation vulnerability on multiplayer servers
  • Fixed: Large underground ruin having one of the creative blocks in it
  • Fixed: Updated Harmony to 2.3.5 which should fix issue when using Harmony mods on Linux systems using GLIBC 2.41 and newer

View full record

  • Like 7
  • Cookie time 6
  • Thanks 3
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.