English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 26451
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â '¿ø°Ý µ¥½ºÅ©Åé ¿¬°áÀÇ Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°Ý ÄÚµå ½ÇÇà ¹®Á¦Á¡'¿¡ ´ëÇÑ hotfix(970927)°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù. ÀÌ Ãë¾àÁ¡À¸·Î ÀÎÇØ °ø°ÝÀÚ°¡ Å͹̳Π¼­ºñ½º »ç¿ëÀÚ·Î ÇÏ¿©±Ý ¾Ç¼º RDP ¼­¹ö¿¡ ¿¬°áÇϵµ·Ï À¯µµÇÑ °æ¿ì, ¶Ç´Â »ç¿ëÀÚ°¡ ÀÌ Ãë¾àÁ¡À» ¾Ç¿ëÇϴ Ư¼öÇÏ°Ô Á¶ÀÛµÈ À¥ »çÀÌÆ®¸¦ ¹æ¹®ÇÏ´Â °æ¿ì ¿ø°Ý ÄÚµå ½ÇÇàÀÌ ¹ß»ýÇÒ ¼ö ÀÖ½À´Ï´Ù.


* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.microsoft.com/technet/security/bulletin/ms09-044.mspx

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows 2000 SP4
Microsoft Windows XP SP2 and SP3
Microsoft Windows XP Professional x64 SP2
Microsoft Windows Server 2003 SP2
Microsoft Windows Server 2003 x64 SP2
Microsoft Windows Server 2003 SP2 for Itanium-based
Microsoft Windows Vista
Microsoft Windows Vista SP1 and SP2
Microsoft Windows Vista x64
Microsoft Windows Vista x64 SP1 and SP2
Microsoft Windows Server 2008
Microsoft Windows Server 2008 SP2
Microsoft Windows Server 2008 x64
Microsoft Windows Server 2008 x64 SP2
Microsoft Windows Server 2008 for Itanium-based
Microsoft Windows Server 2008 SP2 for Itanium-base
ÇØ°áÃ¥ ´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° MS09-044À» ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡(970927)¸¦ Àû¿ëÇÑ´Ù:
http://www.microsoft.com/technet/security/bulletin/ms09-044.mspx
-- ¶Ç´Â --
Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.
°ü·Ã URL CVE-2009-1133,CVE-2009-1929 (CVE)
°ü·Ã URL 35971,35973 (SecurityFocus)
°ü·Ã URL (ISS)