The response to the CS20 event has been phenomenal! Although we're excited to sort through all of the great content that has been submitted, we realize some of you might still be putting the finishing touches on your submissions. So we're extending the deadline for submissions to October 7th. There won't be any more extensions, so make sure all of your content and changes are submitted by this date to be eligible for the event weapon case or sticker capsule.
The final eight teams are ready for the Champions stage of the StarLadder Berlin Major at the Mercedes-Benz Arena!
After a hotly contested Legends stage, ENCE and NRG finished 3-0, Vitality, Astralis, and AVANGAR finished at 3-1 while Na’Vi, Liquid, and Renegades made the cut with a 3-2 record.
Watch live coverage beginning Thursday 6:00 pm (GMT+2) on https://steam.tv/csgo, on the official Twitch stream, and in-game on GOTV to see which team will become the next CS:GO Major Champions.
To celebrate the 20th Anniversary of Counter-Strike, we would like to invite workshop contributors to create content for a themed Weapon Case and Sticker Capsule. The theme will be “Counter-Strike” itself, including all things CS-related, from the original Counter-Strike mod to Counter-Strike: Global Offensive. The weapon finish and sticker designs may be created in any style. We will need weapons for all tiers to complete the case, from Mil-Spec to Covert; consider this when designing your weapon finishes. All designs must be original with the exception of Counter-Strike logos or icons.
To help sort these themed submissions, please tag them with "CS20" in the title of your submission to the workshop (e.g. CS20 | Finish Name). All previous submissions are eligible for the event. Just make sure to tag them so we can find them more easily.
All submissions for this event must be completed and submitted to the workshop by September 19th 2019. The Weapon Case and Sticker Capsule will be released at a later date, after we have chosen which submissions will be included. All items submitted for this event will still be eligible for future releases.
We have also released a new style guide to help with weapon finish creation, and hopefully answer any questions you may have about the process. The guide can be found here.
This list covers the releases between March 20 and April 11 that are each part of a series of security updates.
Larger changes:
Added privilege checking to command execution. Commands originating outside of the client are now only able to execute commands that are considered to be safe. Commands such as 'connect', 'bind', 'quit' and certain cvars such as 'cl_filterstuffcmd' are now only executable by trusted sources.
Setting 'cl_filterstuffcmd' to a value greater than zero (e.g. 'cl_filterstuffcmd 1') will set a number of commands that are potentially abusable, such as 'say', 'fps_max', and 'setinfo', to also be only executable by privileged sources.
Fixes:
Fixed client incorrectly blocking download of custom sprays
Security fixes:
All custom resources downloaded from a server now have their file name's checked for safety before being allowed to download
Invalid file extensions are now prevented in several commands
Dynamic libraries are no longer searched for in custom resource directories
Added additional file extensions to custom resource blocked extensions list
Fixed buffer overflow in message delta parsing
Fixed RCE in weapon message handling
Fixed RCE in model loading
Fixed buffer overflows in TGA and BMP loading
Fixed buffer overflow in demo playback
Fixed buffer overflows in model name loading
Fixed buffer overflow in detail texture loading
Fixed buffer overflow in console map listing
Fixed command chaining in cvar's that specified config files to be passed to the 'exec' command
This list covers the releases between March 20 and April 15 that are each part of a series of security updates.
Larger changes:
Added privilege checking to command execution. Commands originating outside of the client are now only able to execute commands that are considered to be safe. Commands such as 'connect', 'bind', 'quit' and certain cvars such as 'cl_filterstuffcmd' are now only executable by trusted sources.
Setting 'cl_filterstuffcmd' to a value greater than zero (e.g. 'cl_filterstuffcmd 1') will set a number of commands that are potentially abusable, such as 'say', 'fps_max', and 'setinfo', to also be only executable by privileged sources.
Fixes:
Fixed intermittent double weapon firing
Fixed client incorrectly blocking download of custom sprays
Security fixes:
All custom resources downloaded from a server now have their file name's checked for safety before being allowed to download
Invalid file extensions are now prevented in several commands
Dynamic libraries are no longer searched for in custom resource directories
Added additional file extensions to custom resource blocked extensions list
Fixed buffer overflow in message delta parsing
Fixed RCE in weapon message handling
Fixed RCE in model loading
Fixed buffer overflows in TGA and BMP loading
Fixed buffer overflow in demo playback
Fixed buffer overflows in model name loading
Fixed buffer overflow in detail texture loading
Fixed buffer overflow in console map listing
Fixed command chaining in cvar's that specified config files to be passed to the 'exec' command