English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 19006
À§Çèµµ 30
Æ÷Æ® 53
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù DNS
»ó¼¼¼³¸í ÇØ´ç BIND ¼­¹öÀÇ ¹öÀü¿¡ ÀÇÇϸé Á¤º¸³ëÃâ Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù. ISC BIND ¹öÀü 4.9.8 ÀÌÀüÀÇ 4.x ¹öÀüµé°ú 8.2.3 ÀÌÀüÀÇ 8.2.x ¹öÀüµéÀº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ named ÇÁ·Î±×·¥ ½ºÅÃÀ¸·ÎºÎÅÍ È¯°æº¯¼öµéÀ» Àо ¼ö ÀÖµµ·Ï ÇØ ÁÙ ¼ö ÀÖ´Ù.
¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÇØ´ç BIND ¼­¹ö·Î Inverse query¸¦ º¸³» ÇÁ·Î±×·¥ ½ºÅÃÀ» ¾×¼¼½ºÇϰí ȯ°æº¯¼öµéÀ» º¼ ¼ö ÀÖ´Ù. ÀÌ Ãë¾àÁ¡À» µµ¿ëÇÔÀ¸·Î½á ȹµæµÇ´Â Á¤º¸´Â ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ø°ÝµéÀ» Çã¿ëÇÏ´Â 'tsig bug' ¿Í 'complain bug' ¿¡ ´ëÇÑ µµ¿ë ÇÁ·Î±×·¥µé(Exploit)ÀÇ °³¹ß¿¡ ÀÌ¿ëÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-2001-02.html
http://www.securityfocus.com/bid/2321

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
BIND 9.1.0 ¹Ì¸¸ ¹öÀü
ÇØ°áÃ¥ ISC (Internet Software Consortium)´Â BIND ¹öÀü 9.1.0À¸·Î ¾÷±×·¹À̵åÇϱ⸦ °­·ÂÈ÷ ±Ç°íÇϰí ÀÖ´Ù. ´Ù¿î·Îµå¸¦ À§ÇÑ ¸µÅ©´Â ¾Æ·¡¿¡ ÀÖ´Ù:
http://www.securityfocus.com/bid/2321/solution
°ü·Ã URL CVE-2001-0012 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)