English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 12046
À§Çèµµ 40
Æ÷Æ®
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù RPC
»ó¼¼¼³¸í ÇØ´ç Linux kernel nfsd (knfsd) ¼­¹ö´Â ¼­ºñ½º °ÅºÎ °ø°Ý¿¡ Ãë¾àÇÏ´Ù.
°áÇÔÀº nfs3xdr.c kernel ¼Ò½º ÆÄÀÏ¿¡ Æ÷ÇÔµÈ NFSv3¸¦ À§ÇÑ Linux Kernel 2.4 XDR handler ·çƾ¿¡ Á¸ÀçÇÑ´Ù. ÀÌ °áÇÔÀº XDR ÆÐŶÀÇ ±æÀÌ Çʵ带 ó¸®ÇÏ´Â °úÁ¤¿¡¼­ÀÇ signed/unsigned ºÒÀÏÄ¡°¡ ±× ¿øÀÎÀÌ µÈ´Ù. À߸øµÈ ±æÀÌ Çʵ带 °¡Áø ¾ÇÀÇÀûÀÎ GETATTR ¿äûÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â Kernel PanicÀ» À¯¹ßÇÏ¿© ½Ã½ºÅÛÀÌ »ç¿ëÀÚ ¿ä±¸¿¡ ÀÀ´äÇÏÁö ¾Êµµ·Ï ÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/archive/1/330888

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Linux kernel 2.4.21 ¹Ì¸¸ÀÇ ¹öÀüµé
Linux Any version
ÇØ°áÃ¥ Linux kernelÀÇ °¡Àå ÃÖ½ÅÀÇ stable ¹öÀü(2.4.21 ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù. ¾÷±×·¹À̵å Á¤º¸´Â ÇØ´ç º¥´õ¿¡ ¹®ÀÇÇÏ¿©¾ß ÇÑ´Ù. Linux kernelÀÇ °ø½Ä À¥ »çÀÌÆ®´Â http://www.kernel.org/ ¿¡ ÀÖ´Â "Linux Kernel Archives" ÀÌ´Ù.

-- ȤÀº --

ÇÊ¿äÇÏÁö ¾Ê´Ù¸é knfsd ¼­ºñ½º¸¦ ÀÛµ¿ ÁßÁö½ÃŲ´Ù.
°ü·Ã URL CVE-2003-0619 (CVE)
°ü·Ã URL 8298 (SecurityFocus)
°ü·Ã URL 12764 (ISS)