Ãë¾àÁ¡ID |
26590 |
À§Çèµµ |
40 |
Æ÷Æ® |
139,445 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
SMB |
»ó¼¼¼³¸í |
ÇØ´ç ½Ã½ºÅÛ¿¡´Â ¡®DNS ¼¹öÀÇ Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°Ý ÄÚµå ½ÇÇà ¹®Á¦Á¡(2562485) '¿¡ ´ëÇÑ hotfix(MS11-058, 2562485)°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾Ê´Ù. ÀÌ º¸¾È ¾÷µ¥ÀÌÆ®´Â Windows DNS ¼¹ö¿¡¼ ¹ß°ßµÇ¾î ºñ°ø°³ÀûÀ¸·Î º¸°íµÈ Ãë¾àÁ¡ 2°ÇÀ» ÇØ°áÇÕ´Ï´Ù. ÀÌ·¯ÇÑ Ãë¾àÁ¡ÀÇ ½É°¢µµ°¡ ³ôÀ»¼ö·Ï °ø°ÝÀÚ°¡ µµ¸ÞÀÎÀ» µî·ÏÇÏ°í NAPTR DNS ¸®¼Ò½º ·¹Äڵ带 ¸¸µç ÈÄ Æ¯¼öÇÏ°Ô Á¶ÀÛµÈ NAPTR Äõ¸®¸¦ DNS ¼¹ö¿¡ º¸³¾ °æ¿ì ¿ø°Ý ÄÚµå ½ÇÇàÀÌ Çã¿ëµÉ ¼ö ÀÖ½À´Ï´Ù. DNS ¿ªÇÒÀÌ È°¼ºÈµÇÁö ¾ÊÀº ¼¹ö´Â À§ÇèÇÏÁö ¾Ê½À´Ï´Ù. º¸¾È ¾÷µ¥ÀÌÆ®´Â DNS ¼¹ö°¡ ¸Þ¸ð¸®¿¡¼ NAPTR Äõ¸®¸¦ ó¸®ÇÏ´Â ¹æ¹ý°ú »ç¿ë Àü¿¡ ¸Þ¸ð¸®¿¡¼ °³Ã¼¸¦ ÃʱâÈÇÏ´Â ¹æ¹ýÀ» ¼öÁ¤ÇÏ¿© Ãë¾àÁ¡À» ÇØ°áÇÕ´Ï´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://www.microsoft.com/technet/security/bulletin/ms11-058.mspx
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Windows Server 2003 Service Pack 2 Windows Server 2003 x64 Edition Service Pack 2 Windows Server 2003 SP2 for Itanium-based Systems Windows Server 2008 for x32 Service Pack 2 Windows Server 2008 for x64 Service Pack 2 Windows Server 2008 for x64-based Systems and SP1 |
ÇØ°áÃ¥ |
´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° MS11-058À» ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡(2562485)¸¦ Àû¿ëÇÑ´Ù: http://www.microsoft.com/technet/security/Bulletin/MS11-058.mspx -- ¶Ç´Â -- Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù. |
°ü·Ã URL |
CVE-2011-1966,CVE-2011-1970 (CVE) |
°ü·Ã URL |
49012,49019 (SecurityFocus) |
°ü·Ã URL |
(ISS) |
|