Ãë¾àÁ¡ID |
29037 |
À§Çèµµ |
30 |
Æ÷Æ® |
161 |
ÇÁ·ÎÅäÄÝ |
UDP |
ºÐ·ù |
CISCO |
»ó¼¼¼³¸í |
ÇØ´ç CISCO IOS´Â À߸øµÈ ICMP Redirect ÆÐŶ Çã¿ë Ãë¾àÁ¡(CISCO ¹ö±× ID CSCdx92043)À» °¡Áö°í ÀÖ´Ù. ÀÌ Ãë¾àÁ¡Àº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ¶ó¿ìÅͷκÎÅÍ Åë½ÅÀ» °¡·Îä°Å³ª ¹æÇØÇÏ´Â µ¥¿¡ µµ¿ëµÉ ¼ö ÀÖ´Ù. ÀÌ Ãë¾àÁ¡Àº ´ÜÁö IP ¶ó¿ìÆÃ ¿É¼ÇÀÌ ÀÛµ¿ÇÏÁö ¾Ê´Â(disable) Àåºñ¿¡¸¸ ¿µÇâÀ» ÁØ´Ù. µðÆúÆ®·Î IP ¶ó¿ìÆÃ ¿É¼ÇÀº ¸ðµç ¶ó¿ìÅÍ¿¡¼ ÀÛµ¿Çϵµ·Ï(enable) µÇ¾î ÀÖÀ¸¸ç, ÀÌ ¶§´Â ICMP Redirect ÆÐŶÀ» ¼ö½ÅÇϰí ÀνÄÀº ÇÏÁö¸¸ ±×´ë·Î ¹«½ÃÇÑ´Ù. ¹Ý¸é, IP ¶ó¿ìÆÃ ¿É¼ÇÀÌ »ç¿ëµÇÁö ¾Ê´Â ¶ó¿ìÅÍÀÇ °æ¿ì´Â ¸¶Ä¡ È£½ºÆ®Ã³·³ µ¿ÀÛÇÏ¿© ICMP redirect ÆÐŶÀ» ¹Þ¾ÆµéÀδÙ(Accept). µû¶ó¼, ¾ÇÀÇÀûÀÎ °ø°ÝÀÚµéÀÌ À§Á¶µÈ ICMP redirect ÆÐŶÀ» Àü¼ÛÇÏ°Ô µÇ¸é, ¶ó¿ìÅÍ´Â ±× ÆÐŶÀ» ¹Þ¾Æµé¿© À§Á¶µÈ Á¤º¸¸¦ ±â¹ÝÀ¸·Î ¶ó¿ìÆÃ Å×À̺íÀ» °»½ÅÇÑ´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç ½Ã½ºÅÛÀÇ ¹öÀüÁ¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù. ÀÌ Á¡°ËÇ׸ñÀº ¶ÇÇÑ ¹öÀüÁ¤º¸¸¦ ¼öÁýÇϱâ À§ÇÏ¿© Àб⠱ÇÇÑÀÇ SNMP Community ¹®ÀÚ¿À» ÇÊ¿ä·Î ÇÑ´Ù. À̸¦ À§Çؼ´Â Á¤Ã¥ ÆíÁý±â¿¡¼ Á¡°ËÇ׸ñ "snmp/guessable/r"¿¡ Ÿ´çÇÑ Community ¹®ÀÚ¿À» Ãß°¡ÇÏ¿©¾ß ÇÑ´Ù.
* Âü°í »çÀÌÆ®: http://www.cisco.com/en/US/products/sw/iosswrel/ps1829/products_field_notice09186a0080149a04.shtml http://www.securitytracker.com/alerts/2003/Feb/1006075.html
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: ´ÙÀ½ÀÇ ÆÐÄ¡µÈ ¹öÀüÀ» Á¦¿ÜÇÑ ¸ðµç Cisco IOS ¹öÀü 12.2(13.03)B 12.2(12.05)B 12.2(12.05)S 12.2(12.05) 12.2(12.02)S 12.2(12.02)T |
ÇØ°áÃ¥ |
¹®Á¦°¡ ÇØ°áµÈ ´ÙÀ½ Cisco IOS ¹öÀüµé ÁßÀÇ Çϳª·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù. ÀÌ ¾÷±×·¹À̵åµéÀº CiscoÀÇ À¥ »çÀÌÆ®ÀÎ http://www.cisco.com ¿¡ ÀÖ´Â Software Center¸¦ ÅëÇØ ±¸ÇÒ ¼ö ÀÖ´Ù: 12.2(13.03)B 12.2(12.05)B 12.2(12.05)S 12.2(12.05) 12.2(12.02)S 12.2(12.02)T
Àӽà Á¶Ä¡¹æ¹ýÀ¸·Î´Â ¼ö½ÅµÈ ICMP redirect ÆÐŶ¿¡ ´ëÇØ¼ ¶ó¿ìÅͰ¡ °»½Å ÀÛ¾÷À» ÇÏÁö ¾Êµµ·Ï ¼³Á¤ ¸í·ÉÀ» º¯°æÇÑ´Ù. Router(config)# no ip icmp redirect |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
6823 (SecurityFocus) |
°ü·Ã URL |
11306 (ISS) |
|