English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25381
À§Çèµµ 40
Æ÷Æ® 5432
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ ¼³Ä¡µÈ PostgreSQL ¹öÀüÀº 10.21 ÀÌÀü 10, 11.16 ÀÌÀü 11, 12.11 ÀÌÀü 12, 13.7 ÀÌÀü 13 ¶Ç´Â 14.3 ÀÌÀü 14ÀÔ´Ï´Ù. µû¶ó¼­ ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÇ ¿µÇâÀ» ¹ÞÀ» °¡´É¼ºÀÌ ÀÖ½À´Ï´Ù.

- Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER ¹× pg_amcheck´Â ±ÇÇÑ ÀÖ´Â »ç¿ëÀÚ°¡ ´Ù¸¥ »ç¿ëÀÚÀÇ °³Ã¼¸¦ À¯Áö °ü¸®ÇÒ ¶§ ¾ÈÀüÇÏ°Ô ÀÛµ¿Çϱâ À§ÇÑ ¹Ì¿Ï¼ºµÈ µ¿ÀÛÀ» Çß½À´Ï´Ù. ÇØ´ç ¸í·ÉÀº °ü·Ã º¸È£ ±â´ÉÀ» ´Ê°Ô È°¼ºÈ­Çϰųª È°¼ºÈ­ÇÏÁö ¾Ê¾Ò½À´Ï´Ù. Çϳª ÀÌ»óÀÇ ½ºÅ°¸¶¿¡¼­ Àӽà °³Ã¼°¡ ¾Æ´Ñ °³Ã¼¸¦ ¸¸µé ¼ö ÀÖ´Â ±ÇÇÑÀÌ ÀÖ´Â °ø°ÝÀÚ´Â ¼öÆÛÀ¯Àú ID·Î ÀÓÀÇÀÇ SQL ±â´ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ½À´Ï´Ù. (CVE-2022-1552)

* Âü°í »çÀÌÆ®:
https://www.postgresql.org/support/security/CVE-2022-1552/

* ¿µÇâ¹Þ´Â Ç÷§Æû:
PostgreSQL prior to 14.3
Any operating system Any version
ÇØ°áÃ¥ PostgreSQL À¥ ÆäÀÌÁöÀÎ http://www.postgresql.org/download/¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â PostgreSQLÀÇ °¡Àå ÃֽŠ¹öÀü(14.3 ¶Ç´Â ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2022-1552 (CVE)
°ü·Ã URL 103221 (SecurityFocus)
°ü·Ã URL (ISS)