English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 12058
À§Çèµµ 40
Æ÷Æ®
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù Protocol
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®´Â TCP ÆÐŶ³»ÀÇ ºñÁ¤»óÀûÀÎ TCP ¿É¼Ç Çʵ忡 Ãë¾àÇÏ´Ù.
Microsoft Windows ¿î¿µÃ¼Á¦¸¦ À§ÇÑ Symantec Ŭ¶óÀÌ¾ðÆ® ¹æÈ­º®(Firewall)Àº ¿ø°Ý ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡¿¡ Ãë¾àÇÑ °ÍÀ¸·Î º¸°í µÇ¾ú´Ù. TCP ÆÐŶ¿¡ ÀÖ´Â TCP ¿É¼ÇÀ» ó¸®ÇÒ ¶§ SYMNDIS.SYS µå¶óÀ̹ö¿¡ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. ÀÌ´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ´Ü ÇϳªÀÇ ÆÐŶÀ¸·Î ½Ã½ºÅÛÀ» ±â´É Á¤Áö½Ãų ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ½Ã½ºÅÛÀÌ Á¤»óÀûÀÎ ±â´ÉÀ» ȸº¹Çϱâ À§Çؼ­´Â Çϵå¿þ¾î ÀûÀÎ ¸®¼ÂÀÌ ÇÊ¿äÇÏ´Ù°í ÇÑ´Ù.
°ø°ÝÀÚ´Â ¿­·ÁÁ® ÀÖ´Â Æ÷Æ®°¡ ÀÖ´ÂÁö ¾ø´ÂÁö¿¡ °ü°è¾øÀÌ ½Ã½ºÅÛ »óÀÇ ÀÓÀÇÀÇ Æ÷Å©¿¡ ÇÑ °³ÀÇ ÆÐŶÀ» º¸³»¸é µÈ´Ù. ÀÌ °áÇÔÀº ¹æÈ­º®À̳ª IDS°¡ ÀÛµ¿Çϵç ÇÏÁö ¾Êµç À¯È¿ÇÏ´Ù.

* Âü°í »çÀÌÆ®:
http://archives.neohapsis.com/archives/fulldisclosure/2004-03/2406.html
http://secunia.com/advisories/11102/


* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Symantec Norton Internet Security 2003
Symantec Norton Internet Security 2004
Symantec Norton Personal Firewall 2003
Symantec Norton Personal Firewall 2004
Symantec Symantec Client Firewall 5.01 ±×¸®°í 5.1.1
Symantec Symantec Client Security 1.0 ±×¸®°í 1.1
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ Symantec Security Response SYM04-007À» ÂüÁ¶ÇÏ¿© ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://www.sarc.com/avcenter/security/Content/2004.04.20.html
°ü·Ã URL CVE-2004-0375 (CVE)
°ü·Ã URL 10204 (SecurityFocus)
°ü·Ã URL 15936 (ISS)