English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22049
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Oracle 9i ¾ÖÇø®ÄÉÀÌ¼Ç ¼­¹ö¿¡ ÀÖ´Â globals.jsa ÆÄÀÏ ³»¿ëÀÌ ¾×¼¼½º µÇ¾îÁø´Ù. Oracle9iAS¸¦ µðÆúÆ®·Î ¼³Ä¡ÇÒ ¶§ ÁÖ¾îÁø À¥ ¾ÖÇø®ÄÉÀ̼ǿ¡ ´ëÇÑ globals.jsaÀÇ ¼Ò½º ÆÄÀÏÀ» ¿äûÇÒ ¼ö ÀÖ°Ô µÇ¾î ÀÖ´Ù. ÀÌ ÆÄÀÏÀº »ç¿ëÀÚ ID¿Í ÆÐ½º¿öµå¿Í °°Àº Áß¿äÇÑ Á¤º¸¸¦ Á¾Á¾ Æ÷ÇÔÇϰí Àֱ⠶§¹®¿¡ ¼­¹ö¿¡ ÀÇÇØ ¸®ÅϵǾîÁ®¼­´Â ¾ÈµÈ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-2002-08.html
http://marc.info/?l=bugtraq&m=101301440005580&w=2
ÇØ°áÃ¥ $ORACLE_HOME$/apache/apache/conf¿¡ ÀÖ´Â httpd.conf ÆÄÀÏÀ» ÆíÁýÇÏ¿© ´ÙÀ½ ¿£Æ®¸®¸¦ Ãß°¡ÇØ¾ß ÇÑ´Ù:

<Files ~ "^\globals.jsa">
Order allow,deny
Deny from all
</Files>
°ü·Ã URL CVE-2002-0562 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)