English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22046
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Oracle 9iAS´Â XSQLServlet XSQLConfig.xmlÀÇ ¼Ò½º ÆÄÀÏÀÌ ¾×¼¼½º µÇ¾îÁø´Ù. Oracle 9iASÀÇ µðÆúÆ® ¼³Ä¡¿¡ º¸¾È ¹®Á¦°¡ Á¸ÀçÇÏ¿© °ø°ÝÀÚ°¡ XSQL ¼³Á¤ ÆÄÀÏÀÇ ¼Ò½º Äڵ带 ¾×¼¼½º ÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ÀÌ ¼³Á¤ ÆÄÀÏÀº $ORACLE_HOME$/xsql/lib/XSQLConfig.xml¿¡¼­ ã¾ÆÁö¸ç µ¥ÀÌÅͺ£À̽º ¼­¹öÀÇ È£½ºÆ®¸í, »ç¿ëÀÚ ID¿Í ÆÐ½º¿öµå¿Í °°Àº Á¢¼Ó Á¤º¸¸¦ Æ÷ÇÔÇϰí ÀÖ´Ù.

»çÀÌÆ®°¡ Ãë¾àÇÑ »óÅ·ΠÀÖ´ÂÁö¸¦ Ã¼Å©ÇØ º¸±â À§Çؼ­´Â ´ÙÀ½°ú °°ÀÌ Å×½ºÆ®ÇØ º¼ ¼ö ÀÖ´Ù:
http://oracleserver/servlet/oracle.xml.xsql.XSQLServlet/xsql/lib/XSQLConfig.xml

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-2002-08.html
http://www.iss.net/security_center/static/8453.php
ÇØ°áÃ¥ '$ORACLE_HOME$/xsql/lib/XSQLConfig.xml'¿¡ ÀÖ´Â 'XSQLConfig.xml' ÆÄÀÏÀº º¸´Ù ¾ÈÀüÇÑ Àå¼Ò·Î ¿Å°Ü¾ß ÇÑ´Ù. ±×¸®°í º¯°æ»çÇ×À» ¹Ý¿µÇϱâ À§ÇØ ¼­ºí¸´ ¿£ÁøÀÇ ¼³Á¤ ÆÄÀÏÀ» ¾÷µ¥ÀÌÆ® ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2002-0568,CVE-2002-0569 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)