English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22169
À§Çèµµ 20
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Oracle9iAS ¾îÇø®ÄÉÀÌ¼Ç ¼­¹ö´Â ¿ø°ÝÁö °ø°ÝÀÚ¿¡°Ô SOAP ¹®¼­µé¿¡ ´ëÇÑ ¾×¼¼½º¸¦ Çã¿ëÇÑ´Ù.
Oracle9iAS ¾îÇø®ÄÉÀÌ¼Ç ¼­¹ö´Â À¥À» ÅëÇÑ µ¥ÀÌÅͺ£À̽º ¼­ºñ½º °ü¸®¸¦ À§ÇØ SOAP ÇÁ·ÎÅäÄÝÀ» Áö¿øÇÑ´Ù. ÀÌ SOAP(Simple Object Access Protocol)Àº ºÐ»ê ȯ°æ¿¡¼­ XMLÀ» ÅëÇØ Á¾´Ü°£ µ¥ÀÌÅ͸¦ ±³È¯Çϱâ À§ÇØ ±¸ÇöµÈ °£´ÜÇÑ ÇÁ·ÎÅäÄÝÀÌ´Ù. µðÆúÆ®·Î ¼³Ä¡µÈ Oracle9iAS ÀÇ °æ¿ì, ÀÌ SOAP ÄÄÆ÷³ÍÆ®°¡ µðÆúÆ®·Î Enable µÇ¾î ¼³Ä¡µÇ°í ¶ÇÇÑ, SOAP ¹®¼­µéµµ ÀÓÀÇÀÇ ¾×¼¼½º(access)°¡ °¡´ÉÇÏ´Ù. ÀÌ·¯ÇÑ ÆÄÀϵéÀº ¿ø°ÝÁö °ø°ÝÀÚµé·Î ÇÏ¿©±Ý ´ë»ó ¼­¹ö¿¡ ´ëÇÑ Á¤º¸¸¦ ¼öÁýÇϵµ·Ï µµ¿ÍÁÖ°í À̸¦ ÅëÇØ º¸´Ù Áö´ÉÀûÀÎ °ø°ÝÀ» ½ÃµµÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ¿¹¸¦ µé¾î, SOAP ¹®¼­ Áß "ReleasesNotes.html" ÆÄÀÏÀº ÆÄÀÏ ³»¿¡ ´ÙÀ½°ú °°ÀÌ iAS ¹öÀü, SOAP ¹öÀü µîµîÀÇ Á¤º¸µéÀ» Æ÷ÇÔÇϰí À־ ¿ø°ÝÁö °ø°ÝÀڵ鿡°Ô À̸¦ ³ëÃâÇÒ ¼ö ÀÖ´Ù.

ReleaseNotes.html ÆÄÀÏ ¾È¿¡,
<center>iAS v1.X.X.X</center>

* Âü°í »çÀÌÆ®:
http://www.kb.cert.org/vuls/id/476619
http://www.cert.org/advisories/CA-2002-08.htm
ÇØ°áÃ¥ SOAP ¹®¼­ À§Ä¡¿ÍÀÇ ¸ÅÇÎÀ» ²÷±â À§Çؼ­ 'soapdocs' Alias ¸¦ Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù.

1. Oracle 9iAS ÀÇ httpd.conf ÆÄÀÏÀ» ¿¬´Ù.
2. ÆÄÀϷκÎÅÍ ´ÙÀ½ ¶óÀÎÀÇ 'soapdocs' Alias ¸¦ »èÁ¦ÇÑ´Ù.
Alias /soapdocs/ $ORACLE_HOME/soap/docs/
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)