Ãë¾àÁ¡ID |
25238 |
À§Çèµµ |
30 |
Æ÷Æ® |
3306 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
DB |
»ó¼¼¼³¸í |
ÇØ´ç ½Ã½ºÅÛ¿¡´Â MySQL(5.5.x)ÀÇ 5.5.57 ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖÀ¸¸ç, ´Ù¼öÀÇ Ãë¾àÁ¡¿¡ ¿µÇâÀ» ¹Þ´Â´Ù.
- Connector/C ¿Í C API ÄÄÆ÷³ÍÆ®¿¡´Â ¼ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3635)
- Client programs ÄÄÆ÷³ÍÆ®¿¡´Â ±â¹Ð¼º, ¹«°á¼º, ±×¸®°í °¡¿ë¼º¿¡ ¿µÇâÀ» ³¢Ä¡·Á´Â ·ÎÄðø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3636)
- DML ÄÄÆ÷³ÍÆ®¿¡´Â ¼ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3641)
- Charsets ÄÄÆ÷³ÍÆ®¿¡´Â ¼ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3648)
- mysqldump ÄÄÆ÷³ÍÆ®¿¡´Â ¹«°á¼º¿¡ ¿µÇâÀ» ÁÖ´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3651)
- DDL ÄÄÆ÷³ÍÆ®¿¡´Â ±â¹Ð¼º°ú ¹«°á¼º¿¡ ¿µÇâÀ» ÁÖ´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ´Ù¼öÀÇ Æ¯Á¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3652, CVE-2017-3653)
* Âü°í »çÀÌÆ®: https://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-57.html http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html http://www.oracle.com/ocom/groups/public/@otn/documents/webcontent/3809960.xml
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: MySQL 5.5.57 ÀÌÀüÀÇ 5.5.x ¹öÀüµé ¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü |
ÇØ°áÃ¥ |
MySQL À¥ »çÀÌÆ®ÀÎ http://www.mysql.com/ ¿¡¼ ±¸ÇÒ ¼ö ÀÖ´Â MySQLÀÇ °¡Àå ÃֽŠ¹öÀü(5.5.57 ÀÌ»ó)À¸·Î ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù. |
°ü·Ã URL |
CVE-2017-3635,CVE-2017-3636,CVE-2017-3641,CVE-2017-3648,CVE-2017-3651,CVE-2017-3652,CVE-2017-3653 (CVE) |
°ü·Ã URL |
99730,99736,99767,99789,99802,99805,99810 (SecurityFocus) |
°ü·Ã URL |
(ISS) |
|