English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25046
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡´Â 12.5.3 ÀÌÀüÀÇ Sybase Adaptive Server EnterpriseÀÇ ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Â °ÍÀ¸·Î ³ªÅ¸³­´Ù. Sybase Adaptive Server´Â ¿ÏÀüÇÑ SQL °ü°èÇü µ¥ÀÌÅͺ£À̽º °ü¸® ½Ã½ºÅÛÀ¸·Î Microsoft Windows ¿î¿µÃ¼Á¦ µéÀ» Æ÷ÇÔÇÑ ´Ù¾çÇÑ Ç÷§Æûµé¿¡¼­ ÀÌ¿ë °¡´ÉÇÏ´Ù. Sybase Adaptive Server 12.5.3 ÀÌÇÏÀÇ ¹öÀüµéÀº ´ÙÁßÀÇ ¾Ë·ÁÁöÁö ¾ÊÀº Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. ÇöÀç ÀÌ ¹®Á¦Á¡ µéÀº Á¤È®È÷ ¾Ë·ÁÁ® ÀÖÁö ¾Ê¾Æ ·ÎÄà ȤÀº ¿ø°ÝÀ¸·Î µµ¿ë °¡´ÉÇÑ Áö¿¡ ´ëÇØ¼­´Â ºÐ¸íÇÏÁö ¾ÊÀ¸¸ç, Á¢±Ù Á¦¾î ¸®½ºÆ®µé¿¡ ÀÖ´Â ¿À·ùÀÇ °á°ú¿Í °ü·Ã ÀÖ´Â ¹®Á¦Á¡µé·Î ¾Ë·ÁÁ® ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇØ¼­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://archives.neohapsis.com/archives/bugtraq/2004-12/0315.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Sybase »ç, Sybase Adaptive Server 12.5.3 ÀÌÇÏÀÇ ¹öÀüµé
Apple Computer ȍ, Macintosh Any version
Microsoft Windows Any version
Linux Any version
Unix Any version
ÇØ°áÃ¥ ´ÙÀ½ Sybase Adaptive Server Enterprise À¥ ÆäÀÌÁö¸¦ ÂüÁ¶ÇÏ¿© Sybase Adaptive ServerÀÇ °¡Àå ÃֽйöÀü(12.5.4.0 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.sybase.com/products/informationmanagement/adaptiveserverenterprise
°ü·Ã URL CVE-2005-0441 (CVE)
°ü·Ã URL 12080,12562 (SecurityFocus)
°ü·Ã URL 19354 (ISS)