English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 23178
À§Çèµµ 40
Æ÷Æ® 41524
ÇÁ·ÎÅäÄÝ UDP
ºÐ·ù Daemon
»ó¼¼¼³¸í BrightStor Backup Discovery ¼­ºñ½ºÀÇ ¹öÀü¿¡ µû¸£¸é ÇØ´ç ¼­ºñ½º´Â ´ÙÁßÀÇ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. BrightStor ARCserve BackupÀº ±â¾÷¿ë ¹é¾÷ ÇÁ·Î±×·¥ÀÌ´Ù. ¶ÇÇÑ ÀÚü Discovery ¼­ºñ½º´Â BrightStor ¼­¹öµéÀÇ Á¸À縦 ÆľÇÇÏ°íÀÚ ·ÎÄà ³×Æ®¿öÅ© »ó¿¡ ÀÖ´Â ´Ù¸¥ BrightStor ¼­¹öµé·ÎºÎÅÍÀÇ ºê·Îµåij½ºÆ®(broadcast) ÆÐŶµéÀ» ±â´Ù¸°´Ù. ´ÙÁßÀÇ Computer Associates (CA) BrightStor ARCserve Backup Á¦Ç°µéÀº Message Engine RPC ¼­ºñ½º¿Í Tape Engine ¼­ºñ½º¿¡ ÀÖ´Â ´ÙÁßÀÇ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡µé·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¿µÇâÀ» ¹Þ´Â ½Ã½ºÅÛ »óÀ¸·Î Àß Á¶ÀÛµÈ µ¥ÀÌÅ͸¦ °¡Áø RPC ¿äûµéÀ» º¸³¿À¸·Î½á, ºñÀΰ¡µÈ ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â SYSTEM ±ÇÇÑÀ» °¡Áö°í ½Ã½ºÅÛ »ó¿¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
http://supportconnectw.ca.com/public/storage/infodocs/basbrtapeeng-secnotice.asp
http://www.kb.cert.org/vuls/id/437300
http://www.securityfocus.com/archive/1/456711/30/0/threaded
http://www.zerodayinitiative.com/advisories/ZDI-07-004.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Computer Associates, BrightStor ARCserve Backup r11.1
Computer Associates, BrightStor ARCserve Backup r11.5
Computer Associates, BrightStor ARCserve Backup v9.01
Computer Associates, CA Business Protection Suite r2
Computer Associates, CA Business Protection Suite for MS Premium Edition r2
Computer Associates, CA Business Protection Suite for MS Standard Edition r2
Computer Associates, CA Server Protection Suite r2
Computer Associates, BrightStor ARCserve Backup for Windows r11
Computer Associates, BrightStor Enterprise Backup r10.5
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ CA SupportConnect À¥ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â ½Ã½ºÅÛ¿¡ ÀûÀýÇÑ Fix(QO84983, QO84984, QI82917, QO84986, ȤÀº QO84985)¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://supportconnectw.ca.com/public/storage/infodocs/babimpsec-notice.asp
°ü·Ã URL CVE-2006-5171,CVE-2006-5172,CVE-2006-6076,CVE-2006-6917,CVE-2007-0168,CVE-2007-0169 (CVE)
°ü·Ã URL 21221,22005,22006,22010,22015,22016 (SecurityFocus)
°ü·Ã URL 29343,29344,31433,30453 (ISS)