English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22328
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç BadBlue ¼­¹ö´Â Á¦ÇÑµÈ ÆÄÀϵéÀ» ¿ø°ÝÁöÀÇ °ø°ÝÀÚµéÀÌ ÀÐ¾î °¡µµ·Ï Çã¿ëÇÑ´Ù. BadBlue´Â Microsoft Windows ¿î¿µÃ¼Á¦ µéÀ» À§ÇÑ Working Resources »ç¿¡ ÀÇÇØ ¹èÆ÷µÈ P2P ÆÄÀÏ °øÀ¯ À¥ ¼­¹öÀÌ´Ù. BadBlue Personal Edition ¹öÀü 1.7.3Àº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ºñÁ¤»óÀûÀÎ GET ¿äûÀ» º¸³¿À¸·Î½á ¹Î°¨ÇÑ Á¤º¸¸¦ ¾ò¾î °¥ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ¾Ë·ÁÁø ÆÄÀÏ¿¡ ´ëÇØ °ø¹é¹®ÀÚ¸¦ Æ÷ÇÔÇÑ 16Áø URL·Î ÀÎÄÚµùµÈ NULL ¹ÙÀÌÆ® ¹®ÀÚ(% 00)°¡ µ¡ºÙ¿©Áø ºñÁ¤»óÀûÀÎ GET ¿äûÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â EXT.INI (BadBlue ȯ°æ¼³Á¤ ÆÄÀÏ)¿Í °°Àº Á¦ÇÑµÈ ÆÄÀϵéÀ» ÀÐÀ» ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/archive/1/282054

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Working Resources ȍ, BadBlue Personal Edition 1.7.3
Microsoft Windows Any version
ÇØ°áÃ¥ BadBlue ´Ù¿î·Îµå À¥ »çÀÌÆ®ÀÎ http://www.badblue.com/down.htm ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â BadBlueÀÇ °¡Àå ÃֽйöÀü(2.61 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2002-1021,CVE-2002-1022 (CVE)
°ü·Ã URL 5226,5228 (SecurityFocus)
°ü·Ã URL 9557,9558 (ISS)