English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28063
À§Çèµµ 40
Æ÷Æ® 135
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù SMB
»ó¼¼¼³¸í Windows ¸Þ½ÅÀú ¼­ºñ½º°¡ ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ø°Ý¿¡ Ãë¾àÇÏ´Ù. "¸Þ½ÅÀú ¼­ºñ½º(Messenger Service)"´Â ¸ðµç Windows NT, Windows 2000, ±×¸®°í Windows XP µ¥½ºÅ©Åé ¹× ¼­¹ö»ó¿¡ µðÆúÆ®·Î ÀÛµ¿µÈ´Ù. Ãë¾àÁ¡Àº ¸Þ½ÅÀú ¼­ºñ½º°¡ ÇÒ´çµÈ ¹öÆÛ·Î °Ç³×±â Àü¿¡ ¸Þ½ÃÁöÀÇ ±æÀ̰¡ Ÿ´çÇÑÁö¸¦ °Ë»çÇÏÁö ¾ÊÀ½À¸·Î ÀÎÇØ ¹ß»ýÇÑ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î µµ¿ëÇÏ°Ô µÇ¸é ¿µÇâÀ» ¹Þ´Â ½Ã½ºÅÛ»ó¿¡ Local System ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ´Ù. ¶Ç´Â ¸Þ½ÅÀú ¼­ºñ½º¸¦ ÀÛµ¿ÁßÁö ½Ãų ¼öµµ ÀÖ´Ù.
(¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° MS03-026¿¡ ¼³¸íµÈ ¹Ù¿Í °°ÀÌ) MS-RPC Ãë¾àÁ¡°ú À¯»çÇÏ°Ô ¸Þ½ÅÀú ¼­ºñ½º´Â MS-RPC (Microsoft Remote Procedure Call)¸¦ ÅëÇØ ¾×¼¼½ºµÉ ¼öµµ ÀÖ´Ù. ÀÌ·¯ÇÑ ¼º°ÝÀÇ Ãë¾àÁ¡µéÀº "MS Blast/Blaster", "Nachi", ±×¸®°í "SQL Slammer"¿Í °°Àº ÀÎÅÍ³Ý ¿ú¿¡ ÀÇÇØ »ç¿ëµÉ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.microsoft.com/technet/security/bulletin/ms03-043.asp
http://www.kb.cert.org/vuls/id/575892

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Windows NT Any version
Windows 2000 Any version
Windows XP Any version
Windows 2003 Server
ÇØ°áÃ¥ ÇÊ¿äÇÏÁö ¾Ê´Ù¸é ¸Þ½ÅÀú ¼­ºñ½º¸¦ ÀÛµ¿ÁßÁö ½ÃÄÑ¾ß ÇÑ´Ù. ¸Þ½ÅÀú ¼­ºñ½º¸¦ ÀÛµ¿ÁßÁö ½Ã۱â À§Çؼ­´Â ´ÙÀ½°ú °°Àº ÀýÂ÷¸¦ µû¸¥´Ù:

1. "½ÃÀÛ" ¸Þ´º·Î °¡¼­ "Á¦¾îÆÇ"À» Ŭ¸¯ÇÑ´Ù.
2. ½Ã½ºÅÛÀÇ ÇüÅÂ¿Í ¼³Á¤¿¡ µû¶ó "¼º´É ¹× " ¸Þ´º, ȤÀº "°ü¸® µµ±¸" ¸Þ´º¸¦ ã¾Æ°£´Ù.
3. "½Ã½ºÅÛ" ¸Þ´º¸¦ ã¾Æ°£´Ù.
4. "¼­ºñ½º" ¾ÆÀÌÄÜÀ» Ŭ¸¯ÇÑ´Ù.
5. À©µµ¿ìÁî¿¡ ½Ã½ºÅÛ ¼­ºñ½ºÀÇ ¸®½ºÆ®°¡ ³ªÅ¸³¯ °ÍÀÌ´Ù. ½ºÅ©·ÑÀ» ¾Æ·¡·Î ¿òÁ÷¿© "Messenger"¶ó ¸í¸íµÈ ¼­ºñ½º¸¦ ã´Â´Ù. ÀÌ ¼­ºñ½º»ó¿¡¼­ ¸¶¿ì½º ¿À¸¥ÂÊ ¹öưÀ» Ŭ¸¯ÇÏ°í ÆË¾÷¸Þ´º¿¡¼­ "µî·Ï Á¤º¸"¸¦ ¼±ÅÃÇÑ´Ù.
6. "½ÃÀÛ À¯Çü" ¿·¿¡ ÀÖ´Â ´ÙÀ̾ó·Î±× ¹Ú½º¸¦ ÀÌ¿ëÇÏ¿© "»ç¿ë ¾ÈÇÔ"À» ¼±ÅÃÇÑ´Ù.
7. "¼­ºñ½º »óÅÂ" ¼­ºê¸Þ´º ¾Æ·¡¿¡¼­ "ÁßÁö" ¹öưÀ» Ŭ¸¯ÇÑ´Ù.
8. "Àû¿ë"°ú "È®ÀÎ" ¹öưÀ» Ŭ¸¯ÇÑ´Ù. ±×·¯¸é ¼­ºñ½º´Â ÁßÁöµÇ°í "»ç¿ë ¾ÈÇÔ"À¸·Î ¹Ù²ð °ÍÀÌ´Ù.

-- ¶Ç´Â --

´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®ÀÇ º¸¾È °Ô½ÃÆÇ MS03-043À» ÂüÁ¶ÇÏ¿© ÀÌ Ãë¾àÁ¡¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://www.microsoft.com/technet/security/bulletin/ms03-043.asp

-- ¶Ç´Â --

Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.

´ÙÀ½Àº ÀüÇüÀûÀÎ MicrosoftÀÇ ³×Æ®¿öÅ· Æ÷Æ®µéÀÌ´Ù. ÀÌ ¸ðµç Æ÷Æ®µéÀº (°³ÀÎ ¹æÈ­º®À» Æ÷ÇÔÇÑ) ¹æÈ­º®¿¡¼­ °¡´ÉÇÑÇÑ ¾ö°ÝÇÏ°Ô ÅëÁ¦µÇ¾î¾ß ÇÑ´Ù:

135/tcp MS-RPC connection-oriented
135/udp MS-RPC datagrams
137/udp NetBIOS name resolution
138/udp NetBIOS/SMB datagrams
139/tcp NetBIOS/SMB connection-oriented
445/tcp SMB connection-oriented
445/udp SMB datagrams
°ü·Ã URL CVE-2003-0717 (CVE)
°ü·Ã URL 8826 (SecurityFocus)
°ü·Ã URL 13413 (ISS)