English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 26237
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â 'Microsoft XML ÇÙ½É ¼­ºñ½ºµé¿¡ ÀÖ´Â Ãë¾àÁ¡µé'¿¡ ´ëÇÑ Hotfix(MS06-061, KB924191)°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù. Microsoft Windows 2000 SP4, XP SP1°ú SP2, ±×¸®°í Server 2003 SP1Àº Microsoft XML ÇÙ½É ¼­ºñ½ºµé¿¡ ÀÖ´Â ¸î¸î Ãë¾àÁ¡µé·Î ÀÎÇÏ¿©, È£½ºÆ® »ó¿¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¾ÇÀÇÀûÀÎ À¥ ÆäÀÌÁö¸¦ ±¸ÃàÇÔÀ¸·Î½á °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡µéÀ» µµ¿ëÇÒ ¼ö ÀÖÀ¸¸ç ¸¸¾à ¾î¶² »ç¿ëÀÚ°¡ ¾ÇÀÇÀûÀÎ À¥ »çÀÌÆ®¸¦ ¹æ¹®Çϰųª ¾ÇÀÇÀûÀÎ e-mail ¸Þ½ÃÁö¸¦ º¸°Ô µÈ´Ù¸é ÀÌ´Â °ø°ÝÀÚ¿¡°Ô »ç¿ëÀÚÀÇ ½Ã½ºÅÛ¿¡ ¾î¶² ÆÄÀÏÀ» ÀúÀåÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. °ø°ÝÀÚ°¡ ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î µµ¿ëÇÏ°Ô µÈ´Ù¸é ¿µÇâÀ» ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇÑ ¿ÏÀüÇÑ Á¦¾î±ÇÀ» ¾ò¾î³¾ ¼ö ÀÖ´Ù. ÀÌ Ãë¾àÁ¡À» µµ¿ëÇÏ´Â µ¥¿¡´Â »ç¿ëÀÚ¿ÍÀÇ »óÈ£ÀÛ¿ë(interaction)À» ÇÊ¿ä·Î ÇÑ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.microsoft.com/technet/security/bulletin/ms06-061.mspx
http://www.kb.cert.org/vuls/id/547212
http://securitytracker.com/id?1017033
http://secunia.com/advisories/22333

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft XML Core Services 3.0
Microsoft XML Core Services 4.0
Microsoft XML Core Services 5.0 SP1
Microsoft XML Core Services 6.0
Microsoft XML Parser 2.6
Microsoft Windows 2000 SP4
Microsoft Windows XP SP2
Microsoft Windows Server 2003 SP1
ÇØ°áÃ¥ ´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° MS06-061À» ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡(KB924191)¸¦ Àû¿ëÇÑ´Ù:
http://www.microsoft.com/technet/security/bulletin/ms06-061.mspx

-- ¶Ç´Â --

Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.
°ü·Ã URL CVE-2006-4685,CVE-2006-4686 (CVE)
°ü·Ã URL 20338,20339 (SecurityFocus)
°ü·Ã URL 29206,29211 (ISS)