English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 26827
À§Çèµµ 40
Æ÷Æ® 139.445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â 2019³â 2¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾ÊÀ½.

- SMBv2¿¡¼­ ƯÁ¤ ¿äûÀ» À߸ø ó¸®ÇÏ¿© ÄÚµå ½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0630)

- Win32k ÄÄÆ÷³ÍÆ®, HID(Human Interface Devices), Ä¿³Î¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¸¦ À߸ø ó¸®ÇÏ¿© ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0621, CVE-2019-0623, CVE-2019-0661, CVE-2019-0600, CVE-2019-0601)

- Hyper-V¿¡¼­ »ç¿ëÀÚ ÀԷ°ªÀ» ¿Ã¹Ù¸£°Ô °ËÁõÇÏÁö ¸øÇÏ¿©, Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0635)

- GDI ÄÄÆ÷³ÍÆ®¿¡¼­ ¸Þ¸ð¸®ÀÇ ³»¿ëÀ» À¯ÃâÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0602, CVE-2019-0615, CVE-2019-0616, CVE-2019-0619, CVE-2019-0660, CVE-2019-0664)

- .NET Framework¿Í Visual Studio ¼ÒÇÁÆ®¿þ¾î¿¡¼­ ÆÄÀÏÀÇ ¼Ò½º ¸¶Å©¾÷À» üũÇÒ ¶§ ÄÚµå½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0613)

- Win32k ÄÄÆ÷³ÍÆ®¿¡¼­ Ä¿³Î Á¤º¸¸¦ Á¦°øÇÒ ¶§ Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0628)

- ÀÎÅÍ³Ý ÀͽºÇ÷η¯¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¸¦ À߸ø ó¸®ÇÏ¿© Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0676)

- .Net Framework API¿Í Visual Studio ÀÇ URL ÆÄ½Ì ¹æ¹ý¿¡ ±ÇÇÑ»ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0657)

- ÀÎÅÍ³Ý ÀͽºÇ÷η¯¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¿¡ Á¢±Ù ½Ã ÄÚµå½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0606)

- GDI¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¸¦ ó¸®ÇÒ ¶§ ÄÚµå½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0618, CVE-2019-0662)

- Windows¿¡¼­ ÆÄÀÏ Á¤º¸¸¦ ºÎÀûÀýÇÏ°Ô ³ëÃâÇÏ¿© ±ÇÇÑÀÌ ¾ø´Â »ç¿ëÀÚ°¡ µð½ºÅ© »óÀÇ ÄÜÅÙÃ÷¸¦ ÀÐÀ» ¼ö ÀÖ´Ù. (CVE-2019-0636)

- Microsoft ºê¶ó¿ìÀú¿¡¼­ ƯÁ¤ ¸®´ÙÀÌ·ºÆ®¸¦ ºÎÀûÀýÇÏ°Ô Ã³¸®ÇÏ¿© ½ºÇªÇÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0654)

- DHCP ¼­ºñ½º¿¡¼­ Ưº°ÇÏ°Ô Á¶ÀÛµÈ ÆÐŶÀ» ó¸®ÇÒ ¶§ ¸Þ¸ð¸® ¼Õ»óÀÌ ¹ß»ýÇÏ°í ÀÓÀÇÀÇ Äڵ尡 ½ÇÇàµÉ ¼ö ÀÖ´Ù. (CVE-2019-0626)

- Jet µ¥ÀÌÅͺ£À̽º ¿£Áø¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¸¦ ºÎÀûÀýÇÏ°Ô Ã³¸®ÇÏ¿© ÄÚµå½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0595, CVE-2019-0596, CVE-2019-0597, CVE-2019-0598, CVE-2019-0599, CVE-2019-0625)

- Ä¿³Î¿¡¼­ ¸Þ¸ð¸®ÀÇ °´Ã¼¸¦ À߸ø ÃʱâÈ­ÇÏ¿© Á¤º¸À¯Ãâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. (CVE-2019-0663)

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
https://support.microsoft.com/en-us/help/4486564
https://support.microsoft.com/en-us/help/4486563

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Windows Server 2008 SP2
Windows Server 2008 x64 SP2
Windows 7 SP1
Windows 7 x64 SP1
Windows Server 2008 R2 SP1
Windows Server 2008 R2 x64 SP1
Windows 8.1
Windows Server 2012
Windows Server 2012 R2
Windows 10
Windows Server 2016
Windows Server 2019
ÇØ°áÃ¥ ´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° 2019³â 2¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®¸¦ ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÑ´Ù:
https://support.microsoft.com/en-us/help/4486564
https://support.microsoft.com/en-us/help/4486563
https://support.microsoft.com/en-us/help/4487018
https://support.microsoft.com/en-us/help/4486993
https://support.microsoft.com/en-us/help/4487025
https://support.microsoft.com/en-us/help/4487028
-- ¶Ç´Â --
Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.
°ü·Ã URL CVE-2019-0595,CVE-2019-0596,CVE-2019-0597,CVE-2019-0598,CVE-2019-0599,CVE-2019-0600,CVE-2019-0601,CVE-2019-0602,CVE-2019-0606,CVE-2019-0613 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)