security fix: prevent command injection via callvote

This commit is contained in:
Ludwig Nussel committed 2009-01-17 23:09:58 +00:00
1 parent cde5fcfb9b
commit f5aae78481
4 files changed
+29 -3

No files matched your search

+1
View File
@@ -1500,6 +1500,7 @@ void SV_ExecuteClientCommand( client_t *cl, const char *s, qboolean clientOK ) {
if (clientOK) {
// pass unknown strings to the game
if (!u->name && sv.state == SS_GAME) {
Cmd_Args_Sanitize();
VM_Call( gvm, GAME_CLIENT_COMMAND, cl - svs.clients );
}
}