English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 18073
À§Çèµµ 40
Æ÷Æ® 70
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù GOPHER
»ó¼¼¼³¸í ÇØ´ç Gopher ¼­¹ö´Â ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù.
UMN gopherd´Â Gopher ÇÁ·ÎÅäÄÝÀ» ÀÌ¿ëÇÏ¿© ÅØ½ºÆ®¿Í µð·ºÅ丮 °´Ã¼µéÀ» ¼­ºñ½ºÇϱâ À§ÇÏ¿© °í¾ÈµÈ HTTP ¸ðµå·Îµµ ÀÛµ¿ÇÏ´Â gopher ¹× gopher+ ¼­¹öÀÌ´Ù. Gopherd 3.0.5 ÀÌÇÏÀÇ ¹öÀüµéÀº »ç¿ëÀÚ Á¦°ø ÀԷ°ª¿¡ ´ëÇÑ ±æÀÌ °Ë»ç¸¦ ÀûÀýÇÏ°Ô ÇÏÁö ¸øÇÔÀ¸·Î ÀÎÇØ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡°ú Format String Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡À» µµ¿ëÇÏ¿© gopher µ¥¸óÀÇ ±ÇÇÑÀ¸·Î Ãë¾àÇÑ ¼­¹ö »ó¿¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securiteam.com/unixfocus/5FP0L15AKO.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
University of Minnesota, gopherd 3.0.5 ÀÌÇÏÀÇ ¹öÀüµé
Linux Any version
Unix Any version
ÇØ°áÃ¥ Debian GNU/Linux 3.0 (woody)ÀÇ °æ¿ì:
Debian Security Advisory DSA-638-1¸¦ ÂüÁ¶ÇÏ¿© °¡Àå ÃÖ½ÅÀÇ gopherd ÆÐŰÁö(3.0.3woody2 ȤÀº ÀÌÈÄ)·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2004-0560,CVE-2004-0561 (CVE)
°ü·Ã URL 8157,12254 (SecurityFocus)
°ü·Ã URL (ISS)