English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 17042
À§Çèµµ 40
Æ÷Æ® 111
ÇÁ·ÎÅäÄÝ TCP,UDP
ºÐ·ù RPC
»ó¼¼¼³¸í sadmin ÇÁ·Î±×·¥Àº Solaris 2.5, 2.5.1, 2.6, and 7¿¡¼­ default·Î ¼³Ä¡µÇ¾î, ¿ø°Ý¿¡¼­ ½Ã½ºÅÛ°ü¸®¸¦ ÇÒ ¼ö ÀÖ´Ù. ±×·¯³ª ¸î¸î ¹öÀü¿¡´Â Buffer Overflow Ãë¾àÁ¡ÀÌ Á¸ÀçÇÏ¿© root ±ÇÇÑÀ¸·Î ÀÓÀÓÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-99-16-sadmind.html
http://www.iss.net/security_center/static/3688.php
http://www.kb.cert.org/vuls/id/28934

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Linux Any version
Unix Any version
ÇØ°áÃ¥ »ç¿ëÇÏÁö ¾Ê´Â´Ù¸é ÀáÀçÀûÀÎ º¸¾È Ãë¾àÁ¡ÀÌ ÀÖÀ» ¼ö ÀÖÀ¸¹Ç·Î ÇØ´ç ¼­ºñ½ºÀÇ °¡µ¿À» ÁßÁöÇÑ´Ù. ¹Ýµå½Ã »ç¿ëÇÏ¿©¾ß ÇÑ´Ù¸é º¸¾È¿¡ ¹®Á¦°¡ ¾ø´ÂÁö ÇØ´ç Vendor¿¡ ¹®ÀÇ ÈÄ »ç¿ëÇÑ´Ù.

* °¡µ¿ÁßÁö ¹æ¹ý

1. rootÀÇ ±ÇÇÑÀ¸·Î ´ÙÀ½°ú °°ÀÌ rpcÀÇ °¡µ¿À» ÁßÁö½ÃŲ´Ù.

# rpcinfo -d [program num] [version num]

2. /etc/inetd.conf ÆÄÀÏ¿¡¼­ 'sadmind' ¶óÀÎÀ» '#'À» ÀÌ¿ëÇÏ¿© ÁÖ¼®Ã³¸®ÇÑ´Ù.
3. inetd µ¥¸óÀ» Àç±âµ¿½ÃŲ´Ù (kill -HUP [inetd process id]).
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)