English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25242
À§Çèµµ 40
Æ÷Æ® 523
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ IBM DB2 10.1 ÇȽºÆÑ 6 ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. ÇØ´ç ¹öÀüÀº ´ÙÁß ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

- ƯÁ¤ »óȲ¿¡¼­ ¿¡·¯·Î±×ÀÇ ¹Î°¨ÇÑ Á¤º¸°¡ ·ÎÄà »ç¿ëÀÚ¿¡°Ô ³ëÃâµÉ ¼ö ÀÖ´Ù.(CVE-2017-1434)

- DB2 instance ·ÎÄà »ç¿ëÀÚ°¡ root ±ÇÇÑÀ» ¾òÀ» ¼ö ÀÖ´Ù. (CVE-2017-1438, CVE-2017-1439)

- ·ÎÄà »ç¿ëÀÚ°¡ DB2 ÆÄÀÏÀ» ¿À¹ö¶óÀÌÆ® ÇÒ ¼ö ÀÖ´Â ±ÇÇÑ »ó½ÂÀÌ ¹ß»ýÇÑ´Ù. (CVE-2017-1452)

- ƯÁ¤ ±¸¼º¿¡¼­ DB2 Connect Server setup À» ¿ø°Ý °ø°ÝÀÚ°¡ ¹æÇØÇÒ ¼ö ÀÖ´Ù. (CVE-2017-1519)

* Âü°í »çÀÌÆ®:
http://www-01.ibm.com/support/docview.wss?uid=swg22006061
http://www-01.ibm.com/support/docview.wss?uid=swg22006885
http://www-01.ibm.com/support/docview.wss?uid=swg22006109
http://www-01.ibm.com/support/docview.wss?uid=swg22007183
http://www-01.ibm.com/support/docview.wss?uid=swg22007186
http://www-01.ibm.com/support/docview.wss?uid=swg22005740

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
IBM DB2 10.1 Fix Pack 6 ÀÌÀüÀÇ 10.x ¹öÀüµé
ÇØ°áÃ¥ ´ÙÀ½ IBM Áö¿ø ¹× ´Ù¿î·Îµå À¥ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â °¡Àå ÃÖ½ÅÀÇ IBM DB2 Database Fix Pack(10.1 Fix Pack 6 ȤÀº ÀÌÈÄ)À» Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://www-01.ibm.com/support/docview.wss?uid=swg22006061
°ü·Ã URL CVE-2017-1434,CVE-2017-1438,CVE-2017-1439,CVE-2017-1420,CVE-2017-1452,CVE-2017-1519 (CVE)
°ü·Ã URL 93012 (SecurityFocus)
°ü·Ã URL (ISS)