English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 210042
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç Drupal ¼ÒÇÁÆ®¿þ¾î´Â Captcha ±×¸®°í Textimage ¸ðµâµé¿¡ ÀÖ´Â º¸¾È ¿ìȸ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. DrupalÀº PHP·Î Á¦ÀÛµÈ °ø°³ ¼Ò½º ÄÜÅÙÆ® °ü¸® ½Ã½ºÅÛÀÌ´Ù. DrupalÀ» À§ÇÑ Textimage ¸ðµâ 4.7-1.2 ÀÌÀüÀÇ 4.7.x¿Í 5.x-1.1 ÀÌÀüÀÇ 5.x´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ captcha¸¦ ÀÌ¿ëÇÒ ¶§ ºÎÀûÀýÇÑ °ËÁõÀ¸·Î ÀÎÇÏ¿© º¸¾È Á¦ÇѵéÀ» ¿ìȸÇÒ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ÀÌ Ãë¾àÁ¡Àº °ø°ÝÀÚµéÀ̳ª ÀÚµ¿È­µÈ ½Ã½ºÅ۵鿡 ÀÇÇØ captcha °ËÁõÀ» ¿ìȸÇϰųª ÀÓÀÇÀÇ µ¥ÀÌÅ͸¦ Æ÷½ºÆ®ÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://drupal.org/node/114364
http://drupal.org/node/114519
http://secunia.com/advisories/23983
http://secunia.com/advisories/23985

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Drupal Textimage 4.7-1.2 ÀÌÀüÀÇ 4.7.x ¹öÀüµé
Drupal Textimage 5.x-1.1 ÀÌÀüÀÇ 5.x ¹öÀüµé
Drupal Captcha 4.7-1.2 ÀÌÀüÀÇ 4.7.x ¹öÀüµé
Drupal Captcha 5.x-1.1 ÀÌÀüÀÇ 5.x ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ Drupal º¸¾È ±Ç°í¾È ID: DRUPAL-SA-2007-007, http://drupal.org/project/textimage À» ÂüÁ¶ÇÏ¿© Drupal captcha ¸ðµâ ¹öÀü 4.7-1.2 / 5.x-1.1 ±×¸®°í/ȤÀº textimage ¸ðµâ ¹öÀü 4.7-1.2 / 5.x-1.1 ȤÀº ÀÌÈÄ·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2007-0658 (CVE)
°ü·Ã URL 22329 (SecurityFocus)
°ü·Ã URL 31984,31994 (ISS)