English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 12034
À§Çèµµ 40
Æ÷Æ® 111
ÇÁ·ÎÅäÄÝ TCP,UDP
ºÐ·ù RPC
»ó¼¼¼³¸í ÇØ´ç RPC mountd ¼­ºñ½º´Â ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù.
NFS´Â ¼­¹öµéÀÌ Á¦°øÇÏ´Â ÆÄÀÏ ½Ã½ºÅÛµéÀ» Ŭ¶óÀÌ¾ðÆ®µéÀÌ »ç¿ëÇÒ ¼ö ÀÖ°Ô ÇØ ÁÖ´Â ºÐ»ê ÆÄÀÏ ½Ã½ºÅÛÀÌ´Ù. ÀÌ ¼ÒÇÁÆ®¿þ¾î´Â ´ë°³ "mountd" ȤÀº "rpc.mountd"¶ó ºÒ¸°´Ù.
Rpc.mountdÀÇ ¸î¸î ±¸Çöµé, ÁÖ·Î Linux ½Ã½ºÅÛµéÀº ºñÀΰ¡µÈ Á¢¼Ó(mount) ½Ãµµ¸¦ ·Î±ëÇÏ´Â mount µ¥¸óÀÇ ·Î±ë Äڵ忡 ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù. ÀÌ´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚµéÀÌ Ãë¾àÇÑ NFS ÆÄÀÏ ¼­¹ö¿¡ ´ëÇØ °ü¸®ÀÚ ±ÇÇÑÀ¸·Î ¾×¼¼½ºÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.

* ¾Ë¸²: RPC mountd ¼­ºñ½º°¡ ¹öÆÛ ¿À¹öÇ÷οì Å×½ºÆ®¿¡ ÀÇÇØ Å©·¡½¬ µÇ¾úÀ» ¼ö ÀÖ´Ù. µû¶ó¼­ ¼­ºñ½º°¡ Á¤»ó ±â´ÉÀ» ȸº¹Çϱâ À§Çؼ­´Â Àç½ÃÀÛÇÏ¿©¾ß ÇÑ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-1998-12.html
ftp://patches.sgi.com/support/free/security/advisories/19981006-01-I

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Caldera OpenLinux ¸ðµç ¹öÀü
Red Hat Linux ¸ðµç ¹öÀü
Linux ¸ðµç ¹öÀü
ÇØ°áÃ¥ ´ÙÀ½ CERT ±Ç°í¾È CA-1998-12À» ÂüÁ¶ÇÏ¿© ÀÌ Ãë¾àÁ¡¿¡ ´ëÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://www.cert.org/advisories/CA-1998-12.html

Àӽà Á¶Ä¡¹æ¹ýÀ¸·Î ½Ã½ºÅÛ »óÀÇ NFS ¼­ºñ½ºµéÀ» ÀÛµ¿ÁßÁö ½ÃŲ´Ù.
°ü·Ã URL CVE-1999-0002 (CVE)
°ü·Ã URL 121 (SecurityFocus)
°ü·Ã URL 1411 (ISS)