English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 17066
À§Çèµµ 40
Æ÷Æ® 111
ÇÁ·ÎÅäÄÝ TCP,UDP
ºÐ·ù RPC
»ó¼¼¼³¸í NFS ÆÄÀÏ handleÀÌ ÃßÃø °¡´ÉÇϸç À̸¦ ÅëÇØ ÆÄÀϽýºÅÛ¿¡ ´ëÇÑ ºñÀΰ¡µÈ ¾×¼¼½º°¡ °¡´ÉÇÏ´Ù.
º¸¾È Ãë¾àÁ¡Àº ÆÄÀÏ handleµéÀ» ÇÒ´çÇØ ÁÖ´Â ÀÏ¿¡ °ü·ÃÇÑ SunOS NFSÀÇ fsirand ÇÁ·Î±×·¥¿¡ Á¸ÀçÇÑ´Ù. fsirand ÇÁ·Î±×·¥Àº ¿ø°ÝÁöÀÇ »ç¿ëÀÚ°¡ NFS ÆÄÀÏ HandleµéÀ» ÃßÃøÇÒ ¼ö ÀÖ°Ô ÇØ ÁÖ¸ç, ÀáÀçÀûÀ¸·Î NFS ÆÄÀÏ ½Ã½ºÅ۵鿡 Á¢¼ÓÇÏ¿© ¾×¼¼½ºÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. °ø°ÝÀÚ´Â ÆÄÀÏ handleµéÀ» ÃßÃøÇÏ¿© Mountd º¸¾ÈÀ» ¿ìȸÇϰí NFS º¼·ý»óÀÇ ¸ðµç ÆÄÀϵ鿡 ´ëÇÑ ºñÀΰ¡µÈ ¾×¼¼½º¸¦ ÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/77.php
http://www.cert.org/advisories/CA-1991-21.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
SunOS ¸ðµç ¹öÀü
ÇØ°áÃ¥ º¥´õ¿¡ ¹®ÀÇÇÏ¿© NFS jumbo patch (Patch-ID# 100173-13)¸¦ ±¸ÇÏ¿© Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
°ü·Ã URL CVE-1999-0167 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)