| Ãë¾àÁ¡ID |
18036 |
| À§Çèµµ |
30 |
| Æ÷Æ® |
25 |
| ÇÁ·ÎÅäÄÝ |
TCP |
| ºÐ·ù |
SMTP |
| »ó¼¼¼³¸í |
ÇØ´ç SMTP ¼¹ö´Â ¸ÞÀÏ 'redirection' °ø°Ý¿¡ Ãë¾àÇÏ´Ù.
ÀÌ¿Í °°Àº 'redirection' °ø°ÝÀº SendmailÀÇ À߸øµÈ ÁÖ¼Ò ÆÄ½Ì(parsing) Á¤Ã¥À¸·Î ÀÎÇÏ¿© ¹ß»ýÇÑ´Ù. Sendmail ¼¹ö´Â ·ÎÄà ȣ½ºÆ®¸íÀ¸·Î ³¡³ª´Â ÁÖ¼ÒÀÇ °æ¿ì, ·ÎÄà ȣ½ºÆ®¸íÀ» ¶¼¾î³»°í ±× ³ª¸ÓÁö¸¦ ´Ù½Ã ÆÄ½ÌÇÑ´Ù. Áï, ¼ö½Åó(RCPT TO:)ÀÇ ÁÖ¼Ò¸¦ ´ÙÀ½°ú °°ÀÌ 'user@hostname@victim' ¶ó°í ¸í½ÃÇÒ °æ¿ì ¿ø°ÝÁö SMTP ¼¹ö(victim)´Â ÀÌ ¸ÞÀÏÀ» 'user@hostname' À¸·Î Àü´ÞÇÑ´Ù. °ø°ÝÀÚµéÀº ·ÎÄà ȣ½ºÆ®¸íÀ¸·Î ³¡³ª´Â ÁÖ¼Ò¸¦ »ç¿ëÇÏ¿© ¹æÈº®À» ÅëÇØ ¸Þ½ÃÁö¸¦ Àü´ÞÇÔÀ¸·Î½á ¿ÜºÎ¿Í Â÷´ÜµÇ¾î ÀÖ´Â ´Ù¸¥ SMTP ¼¹öµéÀ» °ø°ÝÇÒ ¼ö ÀÖ´Ù.
* ¾Ë¸²: ÀÌ Ãë¾àÁ¡ Á¡°Ë Ç׸ñÀº postfix¿Í °°Àº ÀϺΠSMTP ¼¹öµéÀÇ °æ¿ì Á¡°Ë Ç׸ñ¿¡¼ »ç¿ëµÇ´Â ¸Þ½ÃÁö¸¦ Á¤»óÀûÀ¸·Î ¹Þ¾ÆµéÀ̱â´Â ÇÏÁö¸¸ ¹Ù·Î Æó±âÇϱ⠶§¹®¿¡ "False Positive"ÀÇ °¡´É¼ºÀÌ Á¸ÀçÇÒ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://www.iss.net/security_center/static/3477.php http://online.securityfocus.com/archive/1/11556 |
| ÇØ°áÃ¥ |
´ÙÀ½ ¶óÀÎÀ» /etc/sendmail.cf ÆÄÀÏ¿¡¼ 98¹øÂ° 'ruleset 98' À§¿¡ »ðÀÔÇØ¾ß ÇÑ´Ù.
R$*@$*@$* $#error $@ 5.7.1 $: "551 Sorry, no redirections." |
| °ü·Ã URL |
CVE-1999-0393 (CVE) |
| °ü·Ã URL |
(SecurityFocus) |
| °ü·Ã URL |
(ISS) |
|