English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21731
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç FtpLocate ÇÁ·Î±×·¥Àº fsite Àμö¿¡ ÀÖ´Â ¸í·É ½ÇÇà Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. FtpLocate´Â Perl·Î Á¦ÀÛµÈ FTP »çÀÌÆ®µéÀ» À§ÇÑ À¥ °Ë»ö ¿£ÁøÀÌ´Ù. FtpLocate 1.5¿¡¼­ 2.02±îÁöÀÇ ¹öÀüµéÀº flsearch.pl, flmodule.pl, ±×¸®°í flserv.pl ½ºÅ©¸³Æ®µéÀÇ fsite Àμö·Î °Ç³×Áø »ç¿ëÀÚ°¡ Á¦°øÇÑ ÀԷ¿¡ ´ëÇÑ ºÎÀûÀýÇÑ °ËÁõÀ¸·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÀÓÀÇÀÇ ½Ã½ºÅÛ ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ½© ¸ÞŸ ¹®ÀÚµé('|' ȤÀº ';')À» ÁÖÀÔÇÏ¿© À¥ ¼­¹ö ÇÁ·Î¼¼½ºÀÇ ±ÇÇÑÀ» °¡Áö°í ½Ã½ºÅÛ »ó¿¡ ÀÓÀÇÀÇ ½© ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://secunia.com/advisories/16218/
http://www.securityfocus.com/archive/1/406373/30/0/threaded
http://securitytracker.com/id?1014570

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Chung-Kie Tung, FtpLocate 1.5¿¡¼­ 2.02±îÁöÀÇ ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ 2014³â 6¿ù ÇöÀç ¾÷±×·¹À̵峪 ÆÐÄ¡´Â ³ª¿Í ÀÖÁö ¾Ê´Ù.
°ü·Ã URL CVE-2005-2420 (CVE)
°ü·Ã URL 14367 (SecurityFocus)
°ü·Ã URL 21540 (ISS)