English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 15004
À§Çèµµ 30
Æ÷Æ® 79
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù FINGER
»ó¼¼¼³¸í Finger ¼­ºñ½º¿¡ ½Ã½ºÅÛ¿¡ ÀÖ´Â Àüü °èÁ¤ ¸®½ºÆ®°¡ µð½ºÇ÷¹ÀÌ µÉ ¼ö ÀÖ´Â ¹ö±×°¡ Á¸ÀçÇÑ´Ù. ´ÙÀ½°ú °°Àº ¿äû¿¡ ÀÇÇØ¼­ °¡´ÉÇÏ´Ù.

Finger "0 1 2 3 4 5 6 7 8 9"@target.com

ÀÌ ¸®½ºÆ®´Â Attacker¿¡°Ô »ç¿ëÀÚ °èÁ¤À» ÀÌ¿ëÇÏ¿© Brute force °ø°ÝÀ» Çϱâ À§ÇÑ ÁÁÀº ÀÚ·á°¡ µÉ ¼ö ÀÖ´Ù.

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Linux Any version
Unix Any version
ÇØ°áÃ¥ ¼­¹öÀÇ Account Á¤º¸´Â Cracker¿¡°Ô ¸Å¿ì À¯¿ëÇÑ Á¤º¸·Î »ç¿ëµÇ¾îÁú ¼ö ÀÖ¾î À§ÇèÇÏ´Ù. ƯÈ÷ ÀÌ ¹æ¹ýÀ» ÀÌ¿ëÇÑ Query·Î µî·ÏÈÄ »ç¿ëÇÏÁö ¾Ê´Â Account Á¤º¸¸¦ ¾ò¾î¿Ã ¼ö ÀÖ¾î Login try, Spooing ¶Ç´Â ÀÌ¿Í °áºÎÇÑ ¸¹Àº °ø°Ý¹æ¹ýµéÀ» ÀÌ¿ëÇÏ¿© Account¸¦ ȹµæÇÒ ¼ö ÀÖ´Ù. µû¶ó¼­ ¼­ºñ½º¸¦ »ç¿ëÁßÁöÇϰųª PatchÇÏ¿©¾ß ÇÑ´Ù.

¡Ø UNIX ½Ã½ºÅÛ: /etc/inetd.conf ÆÄÀÏ¿¡¼­ finger ¶óÀÎÀ» Comment Out

1. /etc/inetd.conf ÆÄÀÏ¿¡ ÀÖ´Â finger ¿£Æ®¸®¸¦ ÁÖ¼®Ã³¸® ÇÑ´Ù.
2. ´ÙÀ½ ¸í·É°ú °°ÀÌÇÏ¿© inetd ÇÁ·Î¼¼½º¿¡°Ô ¼öÁ¤µÈ ³»¿ëÀ» ÀÐ¾î µéÀ̵µ·Ï ÇÑ´Ù:
kill -HUP <inetd process id>

*Solaris 10, Solaris 11ÀÇ °æ¿ì:
# svcadm disable svc:/network/finger:default

*Enterprise Linux 6.4, CentOS 6.4, Fedora 19:
/etc/xinetd.d/fingerÀ» ¿­¾î disable=yes·Î ¼³Á¤ÇÑ ÈÄ xinetd¸¦ Àç½ÃÀÛÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)