English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 18121
À§Çèµµ 40
Æ÷Æ® 25
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMTP
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡¼­ ½ÇÇàÁßÀÎ Exim ¹öÀüÀº 4.87°ú 4.91 »çÀÌ¿¡ ÀÖ½À´Ï´Ù (Æ÷ÇÔ). ÇØ´ç ¹öÀüÀº ÀáÀçÀûÀ¸·Î ¿ø°Ý ¸í·É ½ÇÇà Ãë¾àÁ¡ÀÇ ¿µÇâÀ» ¹Þ½À´Ï´Ù. deliver_message () ÇÔ¼ö¿¡ °ø°ÝÀÚ°¡ Ư¼öÇÏ°Ô Á¶ÀÛ µÈ ÀüÀÚ ¸ÞÀÏÀ» ÅëÇØ ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ´Â °áÇÔÀÌ ÀÖ½À´Ï´Ù.

* Âü°í »çÀÌÆ®:
https://www.tenable.com/blog/cve-2019-10149-critical-remote-command-execution-vulnerability-discovered-in-exim https://exim.org/static/doc/security/CVE-2019-10149.txt ftp://ftp.exim.org/pub/exim/exim4/ChangeLog

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Cambridge University, Exim 4.92 ÀÌÀü ¹öÀü
Unix Any version
Linux Any version
ÇØ°áÃ¥ ´ÙÀ½ »çÀÌÆ®¸¦ ÂüÁ¶ÇÏ¿© °¡Àå ÃÖ½ÅÀÇ exim ÆÐÅ°Áö(4.92 ȤÀº ÀÌÈÄ)·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.exim.org/
°ü·Ã URL CVE-2019-10149 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)