English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22940
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ ¼³Ä¡µÈ Apache httpd ¹öÀüÀº 2.4.42 ÀÌÀüÀÔ´Ï´Ù. ÇØ´ç ¹öÀüÀº ´ÙÁß Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù.

- mod_proxy_ftp¿¡¼­ Á¶ÀÛµÈ FTP ¼­¹ö·Î ÇÁ·Ï½ÃÇÒ ¶§ ÃʱâÈ­µÇÁö ¾ÊÀº ¸Þ¸ð¸®¸¦ »ç¿ëÇÑ´Ù. (CVE-2020-1934)

- mod_rewrite¿Í ÇÔ²² ¼³Á¤µÈ ¸®´ÙÀÌ·ºÆ®´Â ÀÎÄÚµùµÈ ÁÙ¹Ù²Þ ¹®ÀÚ¸¦ ¿Ã¹Ù¸£°Ô ó¸®ÇÏÁö ¸øÇØ ¿¹±âÄ¡ ¾Ê´Â URL·Î ¸®´ÙÀÌ·ºÆ®µÉ ¼ö ÀÖ´Ù. (CVE-2020-1927)

* Âü°í »çÀÌÆ®:
https://lists.apache.org/thread.html/r1719675306dfbeaceff3dc63ccad3de2d5615919ca3c13276948b9ac@%3Cdev.httpd.apache.org%3E
https://lists.apache.org/thread.html/r52a52fd60a258f5999a8fa5424b30d9fd795885f9ff4828d889cd201@%3Cdev.httpd.apache.org%3E
https://lists.apache.org/thread.html/r5d12ffc80685b0df1d6801e68000a7707dd694fe32e4f221de67c210@%3Ccvs.httpd.apache.org%3E

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Apache HTTP Server 2.4.42 ÀÌÀü 2.4.x ¹öÀü
Any operating system Any version
ÇØ°áÃ¥ Apache Software Foundation À¥ »çÀÌÆ®ÀÎ http://httpd.apache.org/download.cgi ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Apache HTTP ServerÀÇ °¡Àå ÃֽŠ¹öÀü(2.4.42 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2020-1927,CVE-2020-1934 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)