English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 18075
À§Çèµµ 40
Æ÷Æ® 110
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù POP3
»ó¼¼¼³¸í Digital Mappings Systems POP3 ¼­¹öÀÇ ¹è³Ê Á¤º¸¿¡ µû¸£¸é ÇØ´ç ¼­¹ö¿¡´Â ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. Digital Mapping Systems (DMS) POP3 ¼­¹ö´Â Microsoft Windows Ç÷§ÆûµéÀ» À§ÇÑ POP3 ÄÄÆ÷³ÍÆ®¸¦ °¡Áø Email ¼­¹öÀÌ´Ù. DMS POP3 Server 1.5.3 build 37 ÀÌÇÏÀÇ ¹öÀüµéÀº ÀÎÁõ ÀýÂ÷¿¡¼­ÀÇ ºÎÀûÀýÇÑ ¹öÆÛ ±æÀÌ °ËÁõ ¹®Á¦·Î ÀÎÇÑ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. POP3 ¼­¹ö¿¡ ´ëÇÑ ÀÎÁõ ÀýÂ÷ ½Ã¿¡ Áö³ªÄ¡°Ô ±ä »ç¿ëÀÚ¸í ȤÀº ÆÐ½º¿öµå¸¦ º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ¹öÆÛ¸¦ ¿À¹öÇ÷οì½ÃŰ°í ¼­ºñ½º °ÅºÎ¸¦ ÀÏÀ¸Å°°Ô Çϰųª, Ãë¾àÇÑ ¾îÇø®ÄÉÀ̼ÇÀ» ¼öÇà½ÃŲ »ç¿ëÀÚ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç POP3 ¼­¹öÀÇ ¹è³Ê Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://archives.neohapsis.com/archives/bugtraq/2004-11/0236.html
http://secunia.com/advisories/13248/
http://www.securiteam.com/windowsntfocus/6H00R0KBPO.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Digital Mapping Systems, DMS POP3 Server 1.5.3 b37 ÀÌÇÏÀÇ ¹öÀüµé
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ »çÀÌÆ®¸¦ Âü°íÇÏ¿© ÃֽйöÀüÀÇ POP3 Server·Î ¾÷±×·¹À̵å ÇØ¾ßÇÑ´Ù.
http://landsur.sasktelwebsite.net/FixPOP3.exe
°ü·Ã URL CVE-2004-1533 (CVE)
°ü·Ã URL 11705 (SecurityFocus)
°ü·Ã URL 18161 (ISS)