Forum

Results 1 to 15 of 84

Threaded View

  1. #1
    Join Date
    October 2003
    Location
    Germany
    Posts
    2,370

    Exclamation [SECURITY UPDATE] TeamSpeak 3 Client 3.0.18.1 is Available

    We have just released a very important security update for the TeamSpeak 3 Client addressing a RFI (Remote File Inclusion) vulnerability. Please upgrade your desktop clients to version 3.0.18.1 immediately. The update is available for Windows, Linux and OS X. Mobile clients for Android and iOS are not affected by this issue.

    You can use the auto-update feature to grab this new release. If you need an installer, please refer to our Downloads page.

    Here's the full changelog:

    Code:
    === Client Release 3.0.18.1 10 Oct 2015
      ! Hotfix release to fix security vulnerability


    *** IMPORTANT ***
    We strongly recommend that all server providers and admins change the minimum desktop client version for users required to connect to the server. Unfortunately, this will also prevent mobile clients to connect for now. We'll release updates to Google Play and the Apple App Store as soon as possible (see updates below).

    If you don't want to (or can't) increase the minimum client version on your server, you can prevent users from exploiting this vulnerability by revoking the permissions to create channels with descriptions on your server.

    There are two ways to increase the minimum client version:

    1. Update Server Settings via ServerQuery
    Use the following commands via ServerQuery (per default running on TCP port 10011) to do this:

    Code:
    // authenticate with your serveradmin account (generated during initial server start)
    login username password
    
    // change default settings for virtual servers you create in the future
    use 0           
    serveredit virtualserver_min_client_version=1444491275
    
    // repeat this for all existing virtual servers in the TeamSpeak instance
    use port=9987   
    serveredit virtualserver_min_client_version=1444491275
    use port=9988   
    serveredit virtualserver_min_client_version=1444491275
    ...
    No restart is required when you're using ServerQuery to change the settings.

    2. Update Server Settings via SQL
    If you have access to your servers database (SQLite or MySQL) you can use this SQL query to update all virtual servers at once:

    Code:
    UPDATE server_properties SET value = '1444491275' WHERE ident = 'virtualserver_min_client_version';
    You need to restart the server afterwards so the settings will be reload.



    We sincerely apologize for any inconvenience caused.



    *** UPDATE 01 ***
    An updated Android client has just been pushed to Google Play and will be available in the next few hours.

    *** UPDATE 02 ***
    The Android client update is now live. In addition to a new build number, it introduces Android 6.0 compatibility.

    *** UPDATE 03 ***
    The iOS client has been sumbitted to the Apple App Store and we're waiting for approval.
    Apple usual needs 7-14 days for this.
    Last edited by dante696; October 19th, 2015 at 09:35 AM. Reason: added details about ios approval

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Replies: 0
    Last Post: August 13th, 2015, 05:01 AM
  2. Cannot Update TeamSpeak 3 Client
    By FazzaR in forum Bug Reports [EN/DE]
    Replies: 2
    Last Post: May 24th, 2011, 08:01 AM
  3. TeamSpeak 3 Client Update failing at 59%.
    By rifter in forum Windows
    Replies: 4
    Last Post: May 17th, 2011, 04:24 PM
  4. Replies: 5
    Last Post: October 29th, 2010, 05:53 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •