English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 23265
À§Çèµµ 20
Æ÷Æ® 139
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù Samba
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ Samba 4.4.12 ÀÌÀü ¹öÀüÀÎ 4.4.x ¹öÀü, 4.5.7 ÀÌÀü ¹öÀüÀÎ 4.5.x ¹öÀü ¶Ç´Â 4.6.1 ÀÌÀü ¹öÀüÀÎ 4.6.x ¹öÀüÀÌ °¡µ¿ Áß¿¡ ÀÖ´Ù. ÇØ´ç ¹öÀüÀº ½Éº¼¸¯ üũ¸¦ À§ÇÑ lstat() ÇÔ¼ö È£Ãâ°ú ÆÄÀÏÀ» Àбâ À§ÇÑ open() ÇÔ¼ö È£Ãâ »çÀÌ¿¡ ·¹À̽º ÄÁµð¼ÇÀ¸·Î ÀÎÇÑ Á¤º¸ ³ëÃâ Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù. °ø°ÝÀÚ´Â ½Éº¼¸¯ ¸µÅ©¿Í ÇÔ²² ÃÖ±Ù¿¡ °Ë»çµÈ °æ·Î¸¦ ±³Ã¼ÇÔÀ¸·Î½á, ºÎÁ¤ ÆÄÀÏÀ» ½Ã½ºÅÛ »ó¿¡¼­ ³ëÃâ ½ÃÅ°±â À§ÇÏ¿©, ÀÌ Ãë¾àÁ¡À» ¾Ç¿ëÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
https://www.samba.org/samba/security/CVE-2017-2619.html
https://www.samba.org/samba/history/samba-4.4.12.html
https://www.samba.org/samba/history/samba-4.5.7.html
https://www.samba.org/samba/history/samba-4.6.1.html"

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Samba Project, Samba versions 4.6.1 ÀÌÀüÀÇ 4.6.x ¹öÀüµé
Linux Any version
Unix Any version
ÇØ°áÃ¥ Samba À¥ »çÀÌÆ®ÀÎ https://www.samba.org/samba/download/¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â SambaÀÇ °¡Àå ÃֽŠ¹öÀü (4.6.1 ȤÀº ÀÌÈÄ ¹öÀü)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2017-2619 (CVE)
°ü·Ã URL 97033 (SecurityFocus)
°ü·Ã URL (ISS)