English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25133
À§Çèµµ 40
Æ÷Æ® 5432
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í PostgreSQL ¼­¹öÀÇ ¹öÀü Á¤º¸¿¡ µû¸£¸é ´ÙÁß Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. PostgreSQLÀº SQLÀÇ È®Àå ¼­ºê¼Â(subset)À» Áö¿øÇÏ´Â °´Ã¼-°ü°èÇü µ¥ÀÌÅͺ£À̽º °ü¸® ½Ã½ºÅÛ(DBMS) ·Î¼­ ¸ðµç ¼Ò½º°¡ °ø°³µÇ¾î ÀÖ´Â ¹«·á ¼ÒÇÁÆ®¿þ¾îÀÌ´Ù.

PostgreSQL 8.4.17 ÀÌÀü 8.4 ¹öÀüÀº ´ÙÀ½ÀÇ ´ÙÁß Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

- ¸®´ª½º¿Í Mac OS x¿¡¼­ÀÇ ÀνºÅç·¯°¡ '/tmp' µð·ºÅ丮¿¡ »ý¼ºÇÏ´Â ÆÄÀÏ À̸§ÀÌ ½±°Ô ÃßÃø °¡´ÉÇÏ´Ù. (CVE-2013-1902)

- ¸®´ª½º¿Í Mac OS x¿¡¼­ÀÇ ÀνºÅç·¯°¡ ½´ÆÛÀ¯ÀúÀÇ Æнº¿öµå¸¦ ¾ÈÀüÇÏÁö ¾ÊÀº ¹æ½ÄÀ¸·Î ½ºÅ©¸³Æ®¿¡ Àü´ÞÇÑ´Ù. (CVE-2013-1903)

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç PostgreSQL ¼­¹öÀÇ ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.postgresql.org/about/news/1456/
http://www.postgresql.org/docs/8.4/static/release-8-4-17.html
http://www.postgresql.org/docs/9.0/static/release-9-0-13.html
http://www.postgresql.org/docs/9.1/static/release-9-1-9.html
http://www.postgresql.org/docs/9.2/static/release-9-2-4.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
PostgreSQL 8.4.17 ÀÌÀü 8.4 ¹öÀü
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ PostgreSQL À¥ ÆäÀÌÁöÀÎ http://www.postgresql.org/download/¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â PostgreSQLÀÇ °¡Àå ÃֽŠ¹öÀü(8.4.17 ¶Ç´Â ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2013-1902,CVE-2013-1903 (CVE)
°ü·Ã URL 58877,58882 (SecurityFocus)
°ü·Ã URL (ISS)