English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 26816
À§Çèµµ 40
Æ÷Æ® 139.445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â 2018³â 3¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾ÊÀ½

- À©µµ¿ìÁî ¿ø°Ý µµ¿ì¹Ì°¡ XML ¿ÜºÎ ¿ä¼Ò¸¦ À߸ø ´Ù·ç¾î Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0878)

- Internet Explorer°¡ ¸Þ¸ð¸® °´Ã¼¸¦ À߸ø ´Ù·ç¾î Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0929)

- À©µµ¿ìÁî Shell ¿¡¼­ ÆÄÀÏ º¹»ç ¸ñÀûÁö¸¦ È®ÀÎÇÏÁö ¾Ê¾Æ ¿ø°Ý ÄÚµå ½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0883)

- Microsoft Video Control ¿¡¼­ ¸Þ¸ð¸® °´Ã¼¸¦ À߸ø ´Ù·ç¾î ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0881)

- Microsoft browsers °¡ ¸Þ¸ð¸® °´Ã¼¸¦ À߸ø ´Ù·ç¾î Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0927, CVE-2018-0932)

- Internet Explorer ÀÇ ½ºÅ©¸³Æ® ¿£ÁøÀÌ ¸Þ¸ð¸® °´Ã¼¸¦ À߸ø ´Ù·ç¾î ¿ø°Ý ÄÚµå ½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0889, CVE-2018-0935)

- Internet Explorer °¡ °Ë»ç¿¡ ½ÇÆÐÇÒ ¶§ ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÏ¿© »÷µå¹Ú½º¿¡¼­ ³ª°¥ ¼ö ÀÖ´Ù.

- À©µµ¿ìÁî Ä¿³Î¿¡¼­ ¸Þ¸ð¸® °´Ã¼ ÃʱâÈ­¸¦ À߸øÇÏ¿© Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0811, CVE-2018-0813, CVE-2018-0814)

- È£½ºÆ® ¼­¹öÀÇ Microsoft Hyper-V Network Switch °¡ °Ô½ºÆ® OS »ç¿ëÀÚ ÀÔ·Â °ª °ËÁõÀ» À߸øÇØ ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0885)

- À©µµ¿ìÁî Ä¿³Î¿¡ Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇØ, Kernel Address Space Layout Randomization (ASLR) Á¤º¸¸¦ ÃßÁÙÇϰųª ¿ìȸÇÒ ¼ö ÀÖ´Ù. (CVE-2018-0894, CVE-2018-0895, CVE-2018-0896, CVE-2018-0897, CVE-2018-0898, CVE-2018-0899, CVE-2018-0900, CVE-2018-0901, CVE-2018-0904)

- À©µµ¿ìÁî ÀνºÅç·¯¿¡¼­ ¾ÈÀüÇÏÁö ¾ÊÀº ¶óÀ̺귯¸® ·Îµù ¹æ¹ýÀ¸·Î ÀÎÇÏ¿© ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2018-0868)

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
https://support.microsoft.com/en-us/help/4009469
https://support.microsoft.com/en-us/help/4009470
https://support.microsoft.com/en-us/help/4009471
https://support.microsoft.com/en-us/help/4000825

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Windows Server 2008 SP2
Windows Server 2008 x64 SP2
Windows 7 SP1
Windows 7 x64 SP1
Windows Server 2008 R2 SP1
Windows Server 2008 R2 x64 SP1
Windows 8.1
Windows Server 2012
Windows Server 2012 R2
Windows 10
Windows Server 2016
ÇØ°áÃ¥ ´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° 2018³â 3¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®¸¦ ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÑ´Ù:
https://support.microsoft.com/en-us/help/4009469
https://support.microsoft.com/en-us/help/4009470
https://support.microsoft.com/en-us/help/4009471
https://support.microsoft.com/en-us/help/4000825
-- ¶Ç´Â --
Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.
°ü·Ã URL CVE-2018-0811,CVE-2018-0813,CVE-2018-0814,CVE-2018-0815,CVE-2018-0816,CVE-2018-0817,CVE-2018-0868,CVE-2018-0878,CVE-2018-0881,CVE-2018-0883 (CVE)
°ü·Ã URL 103230,103231,103232,103234,103236,103238,103240,103241,103242,103243,103244,103245,103246,103248,103249 (SecurityFocus)
°ü·Ã URL (ISS)