English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 12035
À§Çèµµ 40
Æ÷Æ®
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù RPC
»ó¼¼¼³¸í ÇØ´ç RPC ¼­ºñ½º 100009 (yppasswdd)´Â ¿ø°ÝÀ¸·Î root ½©À» ȹµæÇÒ ¼ö ÀÖ´Â Buffer Overflow¿¡ Ãë¾àÇÏ´Ù. rpc.yppasswdd ¼­¹ö´Â yppasswd ¸í·É¿¡ ÀÇÇÑ ÆÐ½º¿öµå º¯°æ ¿äûµéÀ» ó¸®Çϰí NIS ÆÐ½º¿öµå ÆÄÀÏÀ» ¼öÁ¤Çϴµ¥ »ç¿ëµÈ´Ù.
SGIÀÇ IRIX 6.5.15 ÀÌÇÏ ¹öÀüµéÀº ·ÎÄà ȤÀº ¿ø°ÝÁöÀÇ »ç¿ëÀÚ¿¡°Ô ½Ã½ºÅÛ»óÀÇ root ±ÇÇѵéÀ» Çã¿ëÇÒ ¼ö ÀÖ´Ù.

* °æ°í: ÀÌ ¼­ºñ½º´Â ¹öÆÛ ¿À¹öÇ÷οì Å×½ºÆ®¿¡ ÀÇÇØ Å©·¡½¬ µÇ¾úÀ» °ÍÀ̹ǷÎ, ±â´ÉÀ» Á¤»óÀ¸·Î ȸº¹Çϱâ À§Çؼ­´Â ¼­ºñ½º¸¦ Àç½ÃÀÛÇÏ¿©¾ß ÇÑ´Ù.

* Âü°í »çÀÌÆ®:
http://online.securityfocus.com/bid/4939
http://www.iss.net/security_center/static/9261.php

* ¿µÇâÀ» ¹ÌÄ¡´Â Ç÷§Æû:
IRIX 6.5.15 ÀÌÇÏ
ÇØ°áÃ¥ ´ÙÀ½ SGIÀÇ º¸¾È ±Ç°í¾È 20020601-01-PÀ» ÅëÇØ ½Ã½ºÅÛ¿¡ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇϰųª SGI IRIX (6.5.16 ÀÌ»ó)ÀÇ ÃֽйöÀüÀ¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
ftp://patches.sgi.com/support/free/security/advisories/20020601-01-P
°ü·Ã URL CVE-2002-0357 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)