English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22189
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Apache mod_access_referer ¸ðµâÀÇ ¹öÀüÀº ¼­ºñ½º°ÅºÎ °ø°Ý¿¡ Ãë¾àÇÏ´Ù.
ApacheÀÇ mod_access_referer ¸ðµâÀº "Referer" HTTP Çì´õ¿¡ ±â¹ÝÇÏ¿© Á¢±ÙÁ¦¾î¸¦ Á¦°øÇØ ÁÖ´Â Apache HTTP ¼­¹ö¸¦ À§ÇÑ ¸ðµâÀÌ´Ù. ÀÌ ¸ðµâÀº NULL Æ÷ÀÎÅÍ ¿ªÂüÁ¶ Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù. ¿¹¸¦µé¾î, ´ÙÀ½°ú °°ÀÌ referer Çì´õ Çʵ带 »ç¿ëÇϸé ÀÌ ¹®Á¦°¡ ¾ß±âµÈ´Ù:

Referer: ://its-missing-http.com

ÀÌ NULL Æ÷ÀÎÅÍ ¿ªÂüÁ¶ Ãë¾àÁ¡À» ¾Ç¿ëÇϸé Ãë¾àÇÑ ½Ã½ºÅ۵鿡 ´ëÇÑ ¼­ºñ½º°ÅºÎ °ø°Ý¿¡ »ç¿ëÇÒ ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ À¥ ¼­¹öÀÇ ¹è³ÊÁ¤º¸ ¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securiteam.com/unixfocus/5ZP0O009PM.html
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0025.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
mod_access_referer ¹öÀü 1.0.2
ÇØ°áÃ¥ ÀÌ ¹®Á¦¿¡ ´ëÇÑ °£´ÜÇÑ ÆÐÄ¡¸¦ ´ÙÀ½ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Ù:
http://sourceforge.net/projects/accessreferer/
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)