English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22285
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Icecast ÇÁ·Î±×·¥ÀÇ ¹öÀü¿¡ µû¸£¸é, ÇÁ·Î±×·¥¿¡´Â 'libshout' °ü·Ã ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.
Icecast ´Â Windows¿Í Unix °è¿­ ¿î¿µÃ¼Á¦ »ó¿¡¼­ µ¿ÀÛÇÏ´Â ¿ÀÇ ¼Ò½º mp3 ¹æ¼Û ÇÁ·Î±×·¥ÀÌ´Ù. Icecast ¹öÀü 1.3.8°ú ±× ÀÌÀü ¹öÀüµé, libshout ¹öÀü 1.0.3°ú ±× ÀÌÀü ¹öÀüµé¿¡´Â ´Ù¼öÀÇ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡µéÀÌ Á¸ÀçÇÑ´Ù. Libshout´Â Icecast ¼­¹ö¿Í ¿¬°áÇÏ°í µ¥ÀÌÅ͸¦ Àü¼ÛÇϱâ À§ÇØ °³¹ßµÈ ¶óÀ̺귯¸®ÀÌ´Ù. ÀÌ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡µéÀº ¿ø°ÝÁö °ø°ÝÀÚµéÀÌ Icecast ¼­¹öÀÇ ±ÇÇÑ(´ëºÎºÐ ·çÆ® ±ÇÇÑ)À¸·Î ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇϰųª ¼­¹ö°¡ Á¤»óÀûÀÎ »ç¿ëÀڵ鿡 ´ëÇØ ¼­ºñ½º¸¦ Á¦°øÇÏÁö ¸øÇϵµ·Ï ¸¸µé ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ¿ø°ÝÁö IcecastÀÇ ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Icecast, Icecast 1.3.8 ÀÌÇÏÀÇ ¹öÀüµé
Icecast, libshout 1.0.3 ÀÌÇÏÀÇ ¹öÀüµé
Linux Any version
ÇØ°áÃ¥ ´ÙÀ½ Icecast À¥ »çÀÌÆ®·ÎºÎÅÍ ÇØ´ç Ãë¾àÁ¡ÀÌ ÇØ°áµÈ IcecastÀÇ °¡Àå ÃֽйöÀü(1.3.12 ¶Ç´Â ±× ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://svn.xiph.org/releases/icecast/

Red Hat Powertools 7.0, 7.1ÀÇ °æ¿ì:
´ÙÀ½ Red Hat º¸¾È ±Ç°í¾È RHSA-2002:063-05À» ÂüÁ¶ÇÏ¿© icecastÀÇ °¡Àå ÃֽйöÀü(1.3.12-1 ¶Ç´Â ±× ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://rhn.redhat.com/errata/RHSA-2002-063.html

Debian GNU/Linux 2.2 (potato)ÀÇ °æ¿ì:
´ÙÀ½ Debian º¸¾È ±Ç°í¾È DSA-089-2¸¦ ÂüÁ¶ÇÏ¿© icecastÀÇ °¡Àå ÃֽйöÀü(1.3.10-1 ¶Ç´Â ±× ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.debian.org/security/2001/dsa-089

±âŸ:
ÇØ´ç Á¦Á¶¾÷ü¿¡ ¹®ÀÇÇÏ¿© ¾÷±×·¹À̵峪 ÆÐÄ¡ Á¤º¸¿¡ ´ëÇØ ¾Ë¾Æº»´Ù.
°ü·Ã URL CVE-2001-1229 (CVE)
°ü·Ã URL 4735 (SecurityFocus)
°ü·Ã URL 9245 (ISS)