English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24081
À§Çèµµ 40
Æ÷Æ® 23
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í 'bash' °èÁ¤¿¡ ÆÐ½º¿öµå ¼³Á¤µÇ¾î ÀÖÁö ¾Ê´Ù. ÀÌ °èÁ¤Àº ¾Æ¸¶ °¡Â¥ Redhat LinuxÀÇ ÆÐÄ¡¿¡ ÀÇÇØ ¼³Ä¡µÈ ¹éµµ¾îÀÏ ¼ö ÀÖ´Ù.
Red Hat º¸¾È ÆÀÀ¸·ÎºÎÅÍ ¿Â °ÍÀ¸·Î À§ÀåÇÑ EmailµéÀÌ ÀÎÅͳݿ¡ À¯Æ÷µÇ¾úÀ¸¸ç ÀÌ EmailµéÀº »ç¿ëÀÚ°¡ ¾ÇÀÇÀûÀÎ ¾÷µ¥ÀÌÆ®µéÀ» ´Ù¿î·ÎµåÇÏ°í ¼³Ä¡Çϵµ·Ï À¯µµÇϰí ÀÖ´Ù. ÀÌ ¹éµµ¾î°¡ Æ÷ÇÔµÈ ¾÷µ¥ÀÌÆ®´Â »ç¿ëÀÚµéÀÌ °¡µ¿Çϰí ÀÖ´Â ½Ã½ºÅÛµéÀ» ÇØÅ·Çϱâ À§ÇØ °í¾ÈµÈ ¾ÇÀÇÀûÀÎ Äڵ带 Æ÷ÇÔÇϰí ÀÖ´Ù.

ÀÌ ·çƮŶ(rootkit)Àº ´ÙÀ½°ú °°Àº ÇàÀ§¸¦ ÇÑ´Ù:
- ÆÐ½º¿öµå¸¦ °¡ÁöÁö ¾ÊÀº "bash" »ç¿ëÀÚ¸¦ »ý¼ºÇÑ´Ù.
- IP ÁÖ¼Ò¿Í ºÎÆÃ½Ã°¢À» È®ÀÎÇÑ´Ù.
- SSHd¸¦ ¶ç¿î´Ù.
- root@addlebrain.com·Î ÀÌ Á¤º¸¸¦ º¸³½´Ù.

* Âü°í »çÀÌÆ®:
http://www.securiteam.com/securitynews/6O00Q2ABFE.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
RedHat Linux Any version
ÇØ°áÃ¥ 'bash' °èÁ¤À» »èÁ¦ÇÏ°í ½Ã½ºÅÛÀ» È®ÀÎÇÑ´Ù. º¸´Ù ÀÚ¼¼ÇÑ ³»¿ë¿¡ ´ëÇØ¼­´Â ÀÌ ¹®¼­ÀÇ "ÂüÁ¶ »çÀÌÆ®" ¶õÀÇ ¸µÅ©µéÀ» ÂüÁ¶ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)