English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 23012
À§Çèµµ 40
Æ÷Æ® 4224
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù XTELLD
»ó¼¼¼³¸í ÇØ´ç xtell µ¥¸óÀº ¿©·¯°¡Áö ¹æ¹ý¿¡ ÀÇÇÑ ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ø°Ýµé¿¡ Ãë¾àÇÏ´Ù.
XtellÀº °£´ÜÇÑ ³×Æ®¿öÅ© ¸Þ¼¼Â¡ ÇÁ·Î±×·¥À¸·Î »ç¿ëÀÚµé°ú ½Ã½ºÅÛµé °£¿¡ Å͹̳Π¸Þ½ÃÁöµéÀ» Àü¼ÛÇϴµ¥ »ç¿ëµÈ´Ù. XtellÀº Linux, BSD ±×¸®°í ¿©·¯ °¡Áö UNIX ±â¹ÝÀÇ ¿î¿µÃ¼Á¦¿¡¼­ ÀÌ¿ë °¡´ÉÇÏ´Ù.
¸î¸î xtell ¹öÀüµé¿¡´Â ´ÙÁß ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡µéÀÌ Á¸ÀçÇÑ´Ù. ¿À¹öÇ÷οì Á¶°ÇµéÀº ¸Þ½ÃÁö°¡ ¼ö½ÅµÉ ¶§ ½ÇÇàµÇ´Â Reverse Lookup¿¡ ´ëÇÑ ÀÀ´äÀ¸·Î DNS ¼­¹ö°¡ ¾ÇÀÇÀûÀÎ ±ä ¹®ÀÚ¿­À» º¸³»°Å³ª, Ident ¼­¹ö¿¡ ÀÇÇØ ¹Ýȯ(return)µÇ´Â Auth ¹®ÀÚ¿­À» ÅëÇØ ¹ß»ýÇÑ´Ù. ȤÀº Ãë¾àÇÑ »ç¿ëÀÚ¿¡°Ô ¾ÆÁÖ ±ä ¸Þ½ÃÁö¸¦ Á÷Á¢ º¸³¿À¸·Î½á ¹ß»ýÇϱ⵵ ÇÑ´Ù.
ÀÌ Ãë¾àÁ¡µéÀÇ ¼º°øÀûÀÎ µµ¿ëÀº xtell µ¥¸óÀÇ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.

Ãë¾àÇÑ Ç÷§Æû:
* xtell xtell 2.6.1

* Âü°í »çÀÌÆ®:
http://online.securityfocus.com/bid/4193
http://www.iss.net/security_center/static/8312.php
ÇØ°áÃ¥ Debian GNU/Linux 2.2 (potato)ÀÇ °æ¿ì:
´ÙÀ½ Debian º¸¾È ±Ç°í¾È DSA 121-1À» ÂüÁ¶ÇÏ¿© XtellÀÇ °¡Àå ÃֽйöÀü(1.91.1 ÀÌ»ó)À¸·Î ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù:
http://www.debian.org/security/2002/dsa-121

´Ù¸¥ ¹èÆ÷ ¹öÀü:
ÇØ´ç º¥´õ¿¡ ¹®ÀÇÇÏ¿© ¾÷±×·¹À̵å ȤÀº ÆÐÄ¡ Á¤º¸¸¦ ±¸ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2002-0332 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)