English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 14027
À§Çèµµ 40
Æ÷Æ® 22
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù Ssh
»ó¼¼¼³¸í ÇØ´ç ¼­¹öÀÇ ssh ¹öÀüÀÌ 1.2.27 ÀÌÇÏÀÌ´Ù.
RSAREF ¶óÀ̺귯¸®¿¡´Â ÀáÀçÀûÀ¸·Î Buffer Overflow¸¦ ÀÏÀ¸Å³ ¼ö ÀÖ´Â Ãë¾àÁ¡ÀÌ ÀÖÀ¸¸ç ÀÌ¿¡ ÀÇÇØ Remote¿¡¼­ root shellÀÌ È¹µæµÇ¾î Áú ¼öµµ ÀÖ´Ù.

RSAREF ¶óÀ̺귯¸®¸¦ »ç¿ëÇÏ¿© ÄÄÆÄÀϵǾú´ÂÁö¿¡ ´ëÇÑ Ã¼Å©´Â 'ssh -V' ¸í·ÉÀ» ÀÌ¿ëÇÏ¿© È®ÀÎÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/bid/843
http://xforce.iss.net/xforce/xfdb/3729
ÇØ°áÃ¥ ¨ç SSH 2 ÀÌ»óÀ¸·Î ¾÷±×·¹À̵å Çϰųª RSAREF ¶óÀ̺귯¸®¸¦ ½á¼­ ÄÄÆÄÀÏÇÏÁö ¾ÊÀº ¹öÀüÀ» »ç¿ëÇÏ¿©¾ß ÇÑ´Ù.
¨è Patch : http://www.cert.org/advisories/CA-99-15/ssh-patch.txt
°ü·Ã URL CVE-1999-0834 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)