English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 16003
À§Çèµµ 30
Æ÷Æ® 21
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù FTP
»ó¼¼¼³¸í ÇØ´ç ¼­¹öÀÇ FTP Bounce¸¦ ÀÌ¿ëÇÏ¿© Á÷Á¢ÀûÀ¸·Î Á¢±ÙÀÌ ºÒ°¡´ÉÇÑ ´Ù¸¥ ¼­¹öµéÀÇ PortscanÀÌ °¡´ÉÇÏ´Ù.
Firewall·Î º¸È£¹Þ°í ÀÖ´Â ³»ºÎ³×Æ®¿öÅ©¿¡ ¿ÜºÎ¿¡ OpenµÈ ftp¼­¹ö°¡ Á¸ÀçÇÒ °æ¿ì, FTP Bounce Attack¿¡ ÀÇÇØ ±× ftp¼­¹ö ÀÌ¿ÜÀÇ ´Ù¸¥ ³»ºÎ¼­¹ö°¡ ftp¼­¹ö¸¦ °æÀ¯ÇÏ¿© scanning ¶Ç´Â °£Á¢ÀûÀ¸·Î attack ´çÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-1997-27.html
http://www.iss.net/security_center/static/892.php
http://www.ciac.org/ciac/bulletins/I-018a.shtml

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
Linux Any version
Unix Any version
FTP ¸ðµç ¹öÀü
ÇØ°áÃ¥ ¼­ºñ½º »ç¿ëÁßÁöÇϰųª Patch ȤÀº ¹öÀüÀ» ¾÷±×·¹À̵å ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)