English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28096
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç SecureCRTÀÇ ¹öÀü¿¡ µû¸£¸é ÀÌ ¼ÒÇÁÆ®¿þ¾î¿¡´Â SSH1 Identifier ¹®ÀÚ¿­ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.
VanDyke Software »çÀÇ SecureCRT´Â Secure Shell (SSH1 and SSH2) »Ó¸¸ ¾Æ´Ï¶ó Telnet°ú rlogin ÇÁ·ÎÅäÄݵéÀ» Áö¿øÇØ ÁÖ´Â ÀÎÅͳÝ, ÀÎÅͶó³ÝÀ» À§ÇÑ Å͹̳Π¿¡¹Ä·¹ÀÌÅÍÀÌ´Ù. SecureCRT Ŭ¶óÀÌ¾ðÆ® 2.x, 3.x, 4.0 beta 2 ÀÌÇÏÀÇ ¹öÀüµéÀº SSH ¼­¹ö·ÎºÎÅÍ ¹ÞÀº ¸Å¿ì ±ä SSH1 ÇÁ·ÎÅäÄÝ Identifier ¹®ÀÚ¿­À» ó¸®ÇÏ·Á°í ÇÒ ¶§ ¹öÆÛ ¿À¹öÇ÷οì Á¶°Ç¿¡ Ãë¾àÇÏ´Ù. ÀÌ´Â SSH ¼­¹öÀÇ Á¦¾î±ÇÀ» °¡Áø ¿ø°ÝÁöÀÇ °ø°ÝÀÚ¿¡°Ô ÀÌ Ãë¾àÁ¡À» µµ¿ëÇϵµ·Ï ¼öÁ¤ÇØ ³õÀº SSH1 ¼­¹ö¿¡ Á¢¼ÓÇÒ ¶§ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇØ¼­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.vandyke.com/products/securecrt/security07-25-02.html
http://www.osvdb.org/4991


* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
VanDyke Software, Inc., SecureCRT 4.0 beta 2 ÀÌÇÏÀÇ ¹öÀüµé
VanDyke Software, Inc., SecureCRT 3.x official
VanDyke Software, Inc., SecureCRT 2.x official
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ VanDyke SoftwareÀÇ 2002³â 7¿ù 25ÀÏÀÚ º¸¾È ±Ç°í¾ÈÀ» ÂüÁ¶ÇÏ¿© ¹öÀü 3.2.2, 3.3.4, 3.4.8, 4.1 ȤÀº ÀÌ»óÀÇ ¹öÀüÀ¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.vandyke.com/products/securecrt/security07-25-02.html
°ü·Ã URL CVE-2002-1059 (CVE)
°ü·Ã URL 5287 (SecurityFocus)
°ü·Ã URL 9650 (ISS)