English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 23270
À§Çèµµ 30
Æ÷Æ® 139
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù Samba
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ Samba 4.6.8 ÀÌÀü 4.6.x ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖÀ¸¸ç, ´ÙÀ½ÀÇ ´ÙÁß Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

- SMB v1, v2, v3 ¼­¸í¿¡ ÇÊ¿äÇÑ ¿ä¼Ò°¡ ºüÁ®ÀÖ´Ù. (CVE-2017-12150)

- DFS ÀçÀü¼Û¿¡ °áÇÔÀÌ Á¸ÀçÇØ, ¾Ïȣȭ°¡ À¯ÁöµÇÁö ¾Ê´Â´Ù. (CVE-2017-12151)

- Ŭ¶óÀ̾ðÆ®ÀÇ write ¿äûÀÇ ¹üÀ§¸¦ À߸ø üũÇØ SMB v1¿¡ °áÇÔÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-12163)

* Âü°í »çÀÌÆ®:
https://www.samba.org/samba/security/CVE-2017-12150.html
https://www.samba.org/samba/security/CVE-2017-12151.html
https://www.samba.org/samba/security/CVE-2017-12163.html
https://www.samba.org/samba/history/samba-4.6.8.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Samba Project, Samba versions 4.6.8 ÀÌÀüÀÇ 4.6.x ¹öÀüµé
Linux Any version
Unix Any version
ÇØ°áÃ¥ Samba À¥ »çÀÌÆ®ÀÎ https://www.samba.org/samba/download/¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â SambaÀÇ °¡Àå ÃֽŠ¹öÀü (4.6.8 ȤÀº ÀÌÈÄ ¹öÀü)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2017-12150,CVE-2017-12151,CVE-2017-12163 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)