Ãë¾àÁ¡ID |
26303 |
À§Çèµµ |
40 |
Æ÷Æ® |
139,445 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
SMB |
»ó¼¼¼³¸í |
ÇØ´ç ½Ã½ºÅÛ¿¡´Â Microsoft Outlook Express¿Í Windows MailÀ» À§ÇÑ ´©Àû ¾÷µ¥ÀÌÆ®(MS07-056, 941202)°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù. Microsoft Outlook Express°ú Windows Mail´Â Microsoft Windows ¿î¿µÃ¼Á¦¿¡ žÀçµÇ´Â e-mail ¹× ´º½º±×·ì Ŭ¶óÀ̾ðÆ®ÀÌ´Ù. Outlook Express ¹öÀü 5.5 ȤÀº 6À» ÀÛµ¿ÇÏ´Â Windows 2000, Windows XP¿Í Windows Server 2003, ±×¸®°í Windows MailÀ» ÀÛµ¿ÇÏ´Â Windows Vista´Â ¾ÇÀÇÀûÀÎ NNTP ÀÀ´ä¿¡ ´ëÇÑ ºÎÀûÀýÇÑ Ã³¸®·Î ÀÎÇÏ¿©, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ¿µÇâÀ» ¹Þ´Â È£½ºÆ® »ó¿¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¾î¶² »ç¿ëÀÚ°¡ ƯÁ¤ À¥ ÆäÀÌÁö¸¦ ¹æ¹®ÇßÀ» ¶§ ¿ø°Ý ÄÚµå ½ÇÇàÀ» Çã¿ëÇÒ ¼ö ÀÖ´Â Àß Á¶ÀÛµÈ À¥ ÆäÀÌÁö¸¦ ¸¸µêÀ¸·Î½á °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡À» µµ¿ëÇÒ ¼ö ÀÖ´Ù. °ø°ÝÀÚ°¡ ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î µµ¿ëÇÏ°Ô µÈ´Ù¸é ¿µÇâÀ» ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇÑ ¿ÏÀüÇÑ Á¦¾î±ÇÀ» ¾ò¾î³¾ ¼ö ÀÖ´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://www.microsoft.com/technet/security/bulletin/ms07-056.mspx http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=607 http://secunia.com/advisories/27112
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Microsoft Outlook Express 5.5 SP2 Microsoft Outlook Express 6.0 Microsoft Outlook Express 6.0 SP1 Microsoft Windows Mail Client Any version Microsoft Windows 2000 SP4 Microsoft Windows XP SP2 Microsoft Windows XP Pro x64 Edition SP2 Microsoft Windows Server 2003 SP2 Microsoft Windows Server 2003 x64 Edition SP2 Microsoft Windows Vista Microsoft Windows Vista x64 Edition |
ÇØ°áÃ¥ |
´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° MS07-056À» ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡(941202)¸¦ Àû¿ëÇÑ´Ù: http://www.microsoft.com/technet/security/bulletin/ms07-056.mspx
-- ¶Ç´Â --
Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù. |
°ü·Ã URL |
CVE-2007-3897 (CVE) |
°ü·Ã URL |
25908 (SecurityFocus) |
°ü·Ã URL |
36811,36812 (ISS) |
|