English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25238
À§Çèµµ 30
Æ÷Æ® 3306
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â MySQL(5.5.x)ÀÇ 5.5.57 ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖÀ¸¸ç, ´Ù¼öÀÇ Ãë¾àÁ¡¿¡ ¿µÇâÀ» ¹Þ´Â´Ù.

- Connector/C ¿Í C API ÄÄÆ÷³ÍÆ®¿¡´Â ¼­ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3635)

- Client programs ÄÄÆ÷³ÍÆ®¿¡´Â ±â¹Ð¼º, ¹«°á¼º, ±×¸®°í °¡¿ë¼º¿¡ ¿µÇâÀ» ³¢Ä¡·Á´Â ·ÎÄðø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3636)

- DML ÄÄÆ÷³ÍÆ®¿¡´Â ¼­ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3641)

- Charsets ÄÄÆ÷³ÍÆ®¿¡´Â ¼­ºñ½º °ÅºÎ¸¦ ¾ß±âÇÏ·Á´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3648)

- mysqldump ÄÄÆ÷³ÍÆ®¿¡´Â ¹«°á¼º¿¡ ¿µÇâÀ» ÁÖ´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ƯÁ¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3651)

- DDL ÄÄÆ÷³ÍÆ®¿¡´Â ±â¹Ð¼º°ú ¹«°á¼º¿¡ ¿µÇâÀ» ÁÖ´Â ÀÎÁõµÈ ¿ø°Ý °ø°ÝÀÚ¸¦ Çã¿ëÇÏ´Â, ´Ù¼öÀÇ Æ¯Á¤µÇÁö ¾ÊÀº Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2017-3652, CVE-2017-3653)

* Âü°í »çÀÌÆ®:
https://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-57.html
http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html
http://www.oracle.com/ocom/groups/public/@otn/documents/webcontent/3809960.xml

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
MySQL 5.5.57 ÀÌÀüÀÇ 5.5.x ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ MySQL À¥ »çÀÌÆ®ÀÎ http://www.mysql.com/ ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â MySQLÀÇ °¡Àå ÃֽŠ¹öÀü(5.5.57 ÀÌ»ó)À¸·Î ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2017-3635,CVE-2017-3636,CVE-2017-3641,CVE-2017-3648,CVE-2017-3651,CVE-2017-3652,CVE-2017-3653 (CVE)
°ü·Ã URL 99730,99736,99767,99789,99802,99805,99810 (SecurityFocus)
°ü·Ã URL (ISS)