English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22145
À§Çèµµ 20
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹öÀÇ /doc µð·ºÅ丮ÀÇ ³»¿ëÀÌ ¸®½ºÆÃ µÈ´Ù.
µðÆúÆ® »óÅÂÀÇ Debian GNU/Linux 2.1ÀÇ Apache ÆÐŰÁö´Â À¥À» ÅëÇØ ¿ø°ÝÀ¸·Î ¾Æ¹«¿¡°Ô³ª /usr/doc¸¦ º¸¿© ÁÖµµ·Ï µÇ¾î ÀÖ´Ù. À̰ÍÀº ´ÙÀ½ ¶óÀÎÀÌ ±â ¼³Á¤µÇ¾î ÀÖ´Â srm.conf ÆÄÀÏ ¶§¹®ÀÌ´Ù.

Alias /doc/ /usr/doc/

À̰ÍÀº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ½Ã½ºÅÛ»óÀÇ ¹®¼­ ÆÄÀϵéÀ» º¼ ¼ö ÀÖµµ·Ï ÇØ ÁÖ¸ç, ÄÄÇ»ÅÍ »ó¿¡ ¼³Ä¡µÈ ¼ÒÇÁÆ®¿þ¾î ÆÐŰÁöÀÇ ¹öÀüµé¿¡ ´ëÇÑ Á¤º¸¸¦ ³ëÃâ½Ãų ¼öµµ ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://online.securityfocus.com/bid/318
http://www.iss.net/security_center/static/2084.php

* ¿µÇâÀ» ¹ÌÄ¡´Â Ç÷§Æû:
Apache HTTP Server Any version
Debian Linux Any version
ÇØ°áÃ¥ Apache ¼³Á¤ ÆÄÀÏ (/etc/apache/access.conf)À» ¼öÁ¤ÇÏ¿© À¥¼­¹ö »óÀÇ /doc µð·ºÅ丮¿¡ ´ëÇÑ ¾×¼¼½º¸¦ Á¦ÇÑÇÏ¿©¾ß ÇÑ´Ù:

<Directory /usr/doc>
AllowOverride None
order deny,allow
deny from all
allow from localhost
</Directory>
°ü·Ã URL CVE-1999-0678 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)