Ãë¾àÁ¡ID |
22145 |
À§Çèµµ |
20 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
WWW |
»ó¼¼¼³¸í |
ÇØ´ç À¥¼¹öÀÇ /doc µð·ºÅ丮ÀÇ ³»¿ëÀÌ ¸®½ºÆÃ µÈ´Ù. µðÆúÆ® »óÅÂÀÇ Debian GNU/Linux 2.1ÀÇ Apache ÆÐŰÁö´Â À¥À» ÅëÇØ ¿ø°ÝÀ¸·Î ¾Æ¹«¿¡°Ô³ª /usr/doc¸¦ º¸¿© ÁÖµµ·Ï µÇ¾î ÀÖ´Ù. À̰ÍÀº ´ÙÀ½ ¶óÀÎÀÌ ±â ¼³Á¤µÇ¾î ÀÖ´Â srm.conf ÆÄÀÏ ¶§¹®ÀÌ´Ù.
Alias /doc/ /usr/doc/
À̰ÍÀº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ½Ã½ºÅÛ»óÀÇ ¹®¼ ÆÄÀϵéÀ» º¼ ¼ö ÀÖµµ·Ï ÇØ ÁÖ¸ç, ÄÄÇ»ÅÍ »ó¿¡ ¼³Ä¡µÈ ¼ÒÇÁÆ®¿þ¾î ÆÐŰÁöÀÇ ¹öÀüµé¿¡ ´ëÇÑ Á¤º¸¸¦ ³ëÃâ½Ãų ¼öµµ ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://online.securityfocus.com/bid/318 http://www.iss.net/security_center/static/2084.php
* ¿µÇâÀ» ¹ÌÄ¡´Â Ç÷§Æû: Apache HTTP Server Any version Debian Linux Any version |
ÇØ°áÃ¥ |
Apache ¼³Á¤ ÆÄÀÏ (/etc/apache/access.conf)À» ¼öÁ¤ÇÏ¿© À¥¼¹ö »óÀÇ /doc µð·ºÅ丮¿¡ ´ëÇÑ ¾×¼¼½º¸¦ Á¦ÇÑÇÏ¿©¾ß ÇÑ´Ù:
<Directory /usr/doc> AllowOverride None order deny,allow deny from all allow from localhost </Directory> |
°ü·Ã URL |
CVE-1999-0678 (CVE) |
°ü·Ã URL |
(SecurityFocus) |
°ü·Ã URL |
(ISS) |
|