Ãë¾àÁ¡ID |
18092 |
À§Çèµµ |
30 |
Æ÷Æ® |
25 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
SMTP |
»ó¼¼¼³¸í |
Inframail SMTP ¼¹öÀÇ ¹è³Ê Á¤º¸¿¡ µû¸£¸é ÇØ´ç ¼¹ö¿¡´Â MAIL FROM ¸í·É¿¡ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. Infradig InframailÀº Microsoft Windows ±×¸®°í Linux ±â¹ÝÀÇ Ç÷§ÆûµéÀ» À§ÇÑ SMTP, POP, HTTP, ±×¸®°í FTP ¼¹öÀÌ´Ù. Inframail Advantage Server Edition ¹öÀü 7.11°ú ±× ÀÌÇÏÀÇ ¹öÀüµéÀº SMTP MAIL FROM ¸í·ÉÀÇ Ã³¸® °úÁ¤¿¡ ÀÖ´Â Ãë¾àÁ¡À» ÀÎÇÏ¿©, ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. ¸Å¿ì ±ä Àμö (¾à 40,960 ¹ÙÀÌÆ®)¸¦ °®´Â Àß Á¶ÀÛµÈ MAIL FROM ¸í·ÉÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ifmail.exe ÇÁ·Î¼¼½º°¡ Å©·¡½¬¸¦ ÀÏÀ¸Å°°Ô ÇÒ ¼ö ÀÖ´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç SMTP ¼¹öÀÇ ¹è³Ê Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://secunia.com/advisories/15828/ http://www.securiteam.com/securitynews/5HP061PGBK.html
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Infradig, Inframail Advantage Server 7.11 ÀÌÇÏÀÇ ¹öÀüµé Linux Any version Microsoft Windows Any version |
ÇØ°áÃ¥ |
InframailÀº ´õ ÀÌ»ó Áö¿øµÇÁö ¾Ê´Â´Ù. º¸¾ÈÀ» À§ÇØ ´Ù¸¥ ¼Ö·ç¼ÇÀ¸·Î ´ëüÇÒ °ÍÀ» ±Ç°íÇÑ´Ù. |
°ü·Ã URL |
CVE-2005-2085 (CVE) |
°ü·Ã URL |
14077 (SecurityFocus) |
°ü·Ã URL |
21160 (ISS) |
|