Ãë¾àÁ¡ID |
21530 |
À§Çèµµ |
40 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
ÇØ´ç AWStats ¼ÒÇÁÆ®¿þ¾î´Â ´ÙÁßÀÇ Ãë¾àÁ¡µé¿¡ Ãë¾àÇÑ °ÍÀ¸·Î ³ªÅ¸³´Ù. AWStats´Â À¥, FTP, ¸ÞÀÏ ¼¹öµé·ÎºÎÅÍ Åë°èÄ¡¸¦ ¼öÁýÇÏ¿© ±×·¡ÇÈÀ¸·Î º¸¿© ÁÖ´Â ¹«·á·Î »ç¿ë °¡´ÉÇÑ ·Î±× ºÐ¼®±âÀÌ´Ù. AWStats 6.4 ÀÌÇÏÀÇ ¹öÀüµéÀº ´ÙÀ½°ú °°Àº ´ÙÁßÀÇ Á¤º¸ ³ëÃâ ¹× ¿ø°Ý ¸í·É ½ÇÇà Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù:
- AWStats 6.4 ÀÌÇÏÀÇ ¹öÀüµé¿¡ ÀÖ´Â awstats.pl ½ºÅ©¸³Æ®´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚµéÀÌ pluginmode, loadplugin, ȤÀº noloadplugin Àμöµé¿¡ ÀÖ´Â ½© ¸ÞŸ ¹®ÀÚµéÀ» ÅëÇØ ÀÓÀÇÀÇ ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. - AWStats 6.3 ±×¸®°í 6.4 ¹öÀüµé¿¡ ÀÖ´Â awstats.pl ½ºÅ©¸³Æ®´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚµéÀÌ loadplugin ±×¸®°í pluginmode ÀμöµéÀ» rawlog¿¡ ¼³Á¤ÇÔÀ¸·Î½á ¼¹öÀÇ À¥ ·Î±×µéÀ» ÀÐ¾î °¥ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.
* Âü°í »çÀÌÆ®: http://www.securityfocus.com/archive/1/390368 http://www.securiteam.com/unixfocus/5IP0E20EUU.html http://www.securityfocus.com/archive/1/390368 http://www.kb.cert.org/vuls/id/259785 http://secunia.com/advisories/14299/ http://marc.theaimsgroup.com/?l=bugtraq&m=110840530924124&w=2
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: AWStats 6.4 ÀÌÇÏÀÇ ¹öÀüµé ¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü |
ÇØ°áÃ¥ |
AWStatsÀÇ ´Ù¿î·Îµå À¥ ÆäÀÌÁöÀÎ http://awstats.sourceforge.net/#DOWNLOAD ¿¡¼ ±¸ÇÒ ¼ö ÀÖ´Â AWStatsÀÇ °¡Àå ÃֽйöÀü(6.5 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
Debian GNU/Linux 3.0 (woody)ÀÇ °æ¿ì: ´ÙÀ½ Debian Security Advisory DSA-682-1À» ÂüÁ¶ÇÏ¿© awstatsÀÇ °¡Àå ÃֽйöÀü(4.0-0.woody.2 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù: http://www.debian.org/security/2005/dsa-682
±âŸ: ÇØ´ç Á¦Á¶¾÷ü¿¡ ¹®ÀÇÇÏ¿© ¾÷±×·¹À̵峪 ÆÐÄ¡ Á¤º¸¿¡ ´ëÇØ ¾Ë¾Æº»´Ù. |
°ü·Ã URL |
CVE-2005-0362,CVE-2005-0363,CVE-2005-0435 (CVE) |
°ü·Ã URL |
12545,12543 (SecurityFocus) |
°ü·Ã URL |
19058,19333,19339 (ISS) |
|