English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21299
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç Mailman ¼ÒÇÁÆ®¿þ¾îÀÇ ¹öÀü¿¡ µû¸£¸é MailmanÀº »ç¿ëÀÚ ÆÐ½º¿öµå °Ë»ö Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù.
GNU MailmanÀº Unix/Linux ±â¹ÝÀÇ ¿î¿µÃ¼Á¦¸¦ À§ÇÑ ¹«·á·Î »ç¿ë °¡´ÉÇÑ °ø°³ ¼Ò½º ¸ÞÀϸµ ¸®½ºÆ® °ü¸® ¼ÒÇÁÆ®¿þ¾îÀÌ´Ù. Mailman 2.1.5 ÀÌÇÏÀÇ ¹öÀüµéÀº ÀÌ Ãë¾àÁ¡À» Æ÷ÇÔÇϰí ÀÖ´Ù. Àß Á¶ÀÛµÈ ¸ÞÀÏ ¸Þ½ÃÁö¸¦ ¼­¹ö·Î º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÀÓÀÇÀÇ »ç¿ëÀÚÀÇ mailman ÆÐ½º¿öµå¸¦ ¾ò¾î³¾ ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç À¥ ¼­¹ö¿¡ ¼³Ä¡µÈ MailmanÀÇ ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://secunia.com/advisories/11701/
http://mail.python.org/pipermail/mailman-announce/2004-May/000072.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
GNU Mailman 2.1.5 ÀÌÀü ¹öÀüµé
Linux Any version
ÇØ°áÃ¥ ´ÙÀ½ GNU Mailman À¥ »çÀÌÆ®·ÎºÎÅÍ MailmanÀÇ °¡Àå ÃֽйöÀü(2.1.5 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.gnu.org/software/mailman/download.html

Mandrake LinuxÀÇ °æ¿ì:
´ÙÀ½ MandrakeSoft Security Advisory MDKSA-2004:051À» ÂüÁ¶ÇÏ¿© mailmanÀÇ °¡Àå ÃֽŠÆÐŰÁö·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.mandriva.com/en/support/security/advisories/
°ü·Ã URL CVE-2004-0412 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL 16256 (ISS)