English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 29047
À§Çèµµ 30
Æ÷Æ® 161
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù CISCO
»ó¼¼¼³¸í ÇØ´ç Cisco IOS´Â ½ºÄ³´× ÈÄ IOS Àç½ÃÀÛ Ãë¾àÁ¡(Cisco ¹ö±× ID CSCds07326)À» °¡Áö°í ÀÖ´Ù.
¸î¸î º¸¾È Á¡°Ë ¼ÒÇÁÆ®¿þ¾î´Â Cisco IOS ¼ÒÇÁÆ®¿þ¾î¿¡ ¸Þ¸ð¸® ¿¡·¯¸¦ À¯¹ßÇÏ°Ô ÇÏ¿© Àç½ÃÀÛ(reload)À» ÀÏÀ¸Å°°Ô ÇÒ ¼ö ÀÖ´Ù. º¸¾È ½ºÄ³³Ê´Â ´Ù¾çÇÑ Æ÷Æ®µé¿¡ ´ëÇØ TCP Á¢¼ÓÀ» ½ÃµµÇϴµ¥, ÀÌ´Â ¿­·ÁÁø Æ÷Æ®µéÀ» ã¾Æ³»°í ³ª¾Æ°¡ ƯÁ¤ Æ÷Æ®µéÀ» »ç¿ëÇÏ´Â °ü·Ã ¼­ºñ½ºµéÀÇ ¾Ë·ÁÁø Ãë¾àÁ¡µéÀ» Á¡°ËÇϱâ À§ÇÔÀÌ´Ù. ±×·¯³ª, ÀÌ Å×½ºÆ®ÀÇ ºÎ¼öÀûÀÎ È¿°ú·Î ¼³Á¤ ÆÄÀÏ¿¡ ´ëÇÑ ¸®ºä(review), ȤÀº ¾²±â ¿äûÀ» ¹ÞÀÚ¸¶ÀÚ ¶ó¿ìÅÍ´Â ¿¹±âÄ¡ ¾Ê°Ô Àç½ÃÀÛÇØ ¹ö¸°´Ù.

ÀÌ Ãë¾àÁ¡Àº ´ÙÀ½ TCP Æ÷Æ®µé¿¡ ´ëÇÑ Á¢¼ÓÀ» ½ÃµµÇÒ ¶§ ÀϾ´Ù:
3100-3999, 5100-5999, 7100-7999 and 10100-10999

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç ½Ã½ºÅÛÀÇ ¹öÀüÁ¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù. ÀÌ Á¡°ËÇ׸ñÀº ¶ÇÇÑ ¹öÀüÁ¤º¸¸¦ ¼öÁýÇϱâ À§ÇÏ¿© Àб⠱ÇÇÑÀÇ SNMP Community ¹®ÀÚ¿­À» ÇÊ¿ä·Î ÇÑ´Ù. À̸¦ À§Çؼ­´Â Á¤Ã¥ ÆíÁý±â¿¡¼­ Á¡°ËÇ׸ñ "snmp/guessable/r"¿¡ Ÿ´çÇÑ Community ¹®ÀÚ¿­À» Ãß°¡ÇÏ¿©¾ß ÇÑ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cisco.com/warp/public/707/ios-tcp-scanner-reload-pub.shtml
http://www.kb.cert.org/vuls/id/178024

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Cisco IOS 12.1
ÇØ°áÃ¥ ´ÙÀ½ Cisco º¸¾È ±Ç°í¾ÈÀ» ÂüÁ¶ÇÏ¿© Cisco IOSÀÇ °¡Àå ÃֽйöÀü (5.5(17) ȤÀº 6.3(9) ȤÀº 7.4(1) ÀÌ»ó)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.cisco.com/warp/public/707/ios-tcp-scanner-reload-pub.shtml

ÀÌ ¾÷±×·¹À̵åµéÀº CiscoÀÇ À¥ »çÀÌÆ®ÀÎ http://www.cisco.com ¿¡ ÀÖ´Â Software Center¸¦ ÅëÇØ ±¸ÇÒ ¼ö ÀÖ´Ù.
°ü·Ã URL CVE-2001-0750 (CVE)
°ü·Ã URL 2804 (SecurityFocus)
°ü·Ã URL 6589 (ISS)