English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 26831
À§Çèµµ 40
Æ÷Æ® 139.445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â 2019³â 6¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®°¡ ¼³Ä¡µÇ¾î ÀÖÁö ¾ÊÀ½.

- ¸¶ÀÌÅ©·Î ¾ÆÅ°ÅØó µ¥ÀÌÅÍ »ùÇøµÀ̶ó°íÇÏ´Â ÃßÃø ½ÇÇà ä³Î Ãë¾àÁ¡ÀÇ »õ·Î¿î ÇÏÀ§ Ŭ·¡½º°¡ Windows¿¡ Á¸ÀçÇÕ´Ï´Ù.
ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î ¾Ç¿ë ÇÑ °ø°ÝÀÚ´Â Æ®·¯½ºÆ® °æ°è¸¦ ³Ñ¾î ±ÇÇÑÀÖ´Â µ¥ÀÌÅ͸¦ ÀÐÀ» ¼ö ÀÖ½À´Ï´Ù. ÀϺΠŬ¶ó¿ìµå ¼­ºñ½º ±¸¼º°ú °°Àº °øÀ¯ ¸®¼Ò½º ȯ°æ¿¡¼­ ÀÌ·¯ÇÑ Ãë¾àÁ¡À¸·Î ÀÎÇØ ÇÑ °¡»ó ÄÄÇ»ÅÍ°¡ ´Ù¸¥ °¡»ó ÄÄÇ»ÅÍ¿¡¼­ ºÎÀûÀýÇÏ°Ô Á¤º¸¿¡ ¾×¼¼½º ÇÒ ¼ö ÀÖ½À´Ï´Ù. µ¶¸³ ½ÇÇà Çü ½Ã½ºÅÛÀÇ Å½»öÇÏÁö ¾Ê´Â ½Ã³ª¸®¿À¿¡¼­ °ø°ÝÀÚ´Â ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀÌÀü ¾×¼¼½º ±ÇÇÑÀ̳ª ÀÌ·¯ÇÑ Ãë¾àÁ¡À» ¾Ç¿ëÇϱâ À§ÇØ ´ë»ó ½Ã½ºÅÛ¿¡¼­ Ư¼öÇÏ°Ô Á¶ÀÛ µÈ ÀÀ¿ë ÇÁ·Î±×·¥À» ½ÇÇàÇÒ ±ÇÇÑÀÌ ÇÊ¿äÇÕ´Ï´Ù.
(CVE-2018-11091, CVE-2018-12126, CVE-2018-12127, CVE-2018-12130)

- .NET Framework ¹× .NET Core°¡ RegEx ¹®ÀÚ¿­À» ºÎÀûÀýÇÏ°Ô Ã³¸®ÇÏ¸é ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù. ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î ¾Ç¿ë ÇÑ °ø°ÝÀÚ´Â .NET ÀÀ¿ë ÇÁ·Î±×·¥¿¡ ´ëÇÑ ¼­ºñ½º °ÅºÎ¸¦ À¯¹ßÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿ø°Ý ÀÎÁõµÇÁö ¾ÊÀº °ø°ÝÀڴ Ư¼öÇÏ°Ô Á¶ÀÛ µÈ ¿äûÀ» .NET Framework (¶Ç´Â .NET ÄÚ¾î) ÀÀ¿ë ÇÁ·Î±×·¥¿¡ ¹ßÇàÇÏ¿©ÀÌ Ãë¾àÁ¡À» ¾Ç¿ë ÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ ¾÷µ¥ÀÌÆ®´Â .NET Framework ¹× .NET Core ÀÀ¿ë ÇÁ·Î±×·¥¿¡¼­ RegEx ¹®ÀÚ¿­ 󸮸¦ ó¸®ÇÏ´Â ¹æ¹ýÀ» ¼öÁ¤ÇÏ¿© Ãë¾àÁ¡À» ÇØ°áÇÕ´Ï´Ù. (CVE-2019-0820)

- Microsoft Windows OLE°¡ »ç¿ëÀÚ ÀÔ·ÂÀÇ À¯È¿¼ºÀ» ¿Ã¹Ù¸£°Ô °Ë»çÇÏÁö ¸øÇÒ ¶§ ¿ø°Ý ÄÚµå ½ÇÇà Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù. ħÀÔÀÚ´ÂÀÌ Ãë¾àÁ¡À» ¾Ç¿ëÇÏ¿© ¾Ç¼º Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ½À´Ï´Ù. (CVE-2019-0885)

- Windows Ä¿³ÎÀÌ Å° ¿­°Å¸¦ ºÎÀûÀýÇÏ°Ô Ã³¸® ÇÒ ¶§ ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù. ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î ¾Ç¿ë ÇÑ °ø°ÝÀÚ´Â ´ë»ó ½Ã½ºÅÛ¿¡¼­ ³ôÀº ±ÇÇÑÀ» ¾òÀ» ¼ö ÀÖ½À´Ï´Ù. ·ÎÄ÷ΠÀÎÁõ µÈ °ø°ÝÀڴ Ư¼öÇÏ°Ô Á¶ÀÛ µÈ ÀÀ¿ë ÇÁ·Î±×·¥À» ½ÇÇàÇÏ¿©ÀÌ Ãë¾àÁ¡À» ¾Ç¿ë ÇÒ ¼ö ÀÖ½À´Ï´Ù. º¸¾È ¾÷µ¥ÀÌÆ®´Â Windows Ä¿³ÎÀÌ Å° ¿­°Å¸¦ ¿Ã¹Ù¸£°Ô ó¸®Çϵµ·ÏÇÏ¿© Ãë¾àÁ¡À» ÇØ°áÇÕ´Ï´Ù. (CVE-2019-0881)

- Windows°¡ ƯÁ¤ ½Éº¼¸¯ ¸µÅ©¸¦ Á¦´ë·Î ó¸®ÇÏÁö ¸øÇϸé Microsoft Windows¿¡ ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù. ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î ¾Ç¿ë ÇÑ °ø°ÝÀÚ´Â ÀáÀçÀûÀ¸·Î ƯÁ¤ Ç׸ñÀ» »óÀ§ ¼öÁØ¿¡¼­ ½ÇÇàÇϵµ·Ï ¼³Á¤ÇÏ¿© »ç¿ë ±ÇÇÑÀ» ³ôÀÏ ¼ö ÀÖ½À´Ï´Ù. (CVE-2019-0936)

- Internet Explorer°¡ URLÀ» ºÎÀûÀýÇÏ°Ô Ã³¸®ÇÏ¸é ½ºÇªÇÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù. ÀÌ Ãë¾àÁ¡À» ¼º°øÀûÀ¸·Î ¾Ç¿ë ÇÑ °ø°ÝÀÚ´Â »ç¿ëÀÚ¸¦ Ư¼öÇÏ°Ô Á¶ÀÛ µÈ À¥ »çÀÌÆ®·Î ¸®µð·º¼ÇÇÏ¿© »ç¿ëÀÚ¸¦ ¼ÓÀÏ ¼ö ÀÖ½À´Ï´Ù. Ư¼öÇÏ°Ô Á¶ÀÛ µÈ À¥ »çÀÌÆ®´Â ÄÜÅÙÃ÷¸¦ ½ºÇªÇÎÇϰųª Çǹþ ¿ªÇÒÀ»ÇÏ¿© À¥ ¼­ºñ½ºÀÇ ´Ù¸¥ Ãë¾àÁ¡À» °ø°Ý ÇÒ ¼ö ÀÖ½À´Ï´Ù. (CVE-2019-0921)

* Âü°í »çÀÌÆ®:
https://support.microsoft.com/en-us/help/4009469
https://support.microsoft.com/en-us/help/4009470
https://support.microsoft.com/en-us/help/4009471
https://support.microsoft.com/en-us/help/4000825
https://support.microsoft.com/en-us/help/4464619

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Windows Server 2008 SP2
Windows Server 2008 x64 SP2
Windows 7 SP1
Windows 7 x64 SP1
Windows Server 2008 R2 SP1
Windows Server 2008 R2 x64 SP1
Windows 8.1
Windows Server 2012
Windows Server 2012 R2
Windows 10
Windows Server 2016
ÇØ°áÃ¥ ´ÙÀ½ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® º¸¾È °Ô½Ã¹° 2019³â 6¿ù Microsoft º¸¾È ¾÷µ¥ÀÌÆ®¸¦ ÂüÁ¶ÇÏ¿© ½Ã½ºÅÛ¿¡ ´ëÇÑ ÀûÀýÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÑ´Ù:
https://support.microsoft.com/en-us/help/4009469
https://support.microsoft.com/en-us/help/4009470
https://support.microsoft.com/en-us/help/4009471
https://support.microsoft.com/en-us/help/4000825
https://support.microsoft.com/en-us/help/4464619
-- ¶Ç´Â --
Windows Ç÷§ÆûµéÀ» À§ÇÑ ÆÐÄ¡µéÀº ¶ÇÇÑ Microsoft Windows Update À¥ »çÀÌÆ®ÀÎ http://windowsupdate.microsoft.com ¿¡¼­µµ ±¸ÇÒ ¼ö ÀÖ´Ù. Windows Update´Â »ç¿ë ÁßÀÎ WindowsÀÇ ¹öÀüÀ» ÀÚµ¿À¸·Î ã¾Æ³»°í ÀûÀýÇÑ ÆÐÄ¡¸¦ Á¦°øÇØ ÁØ´Ù.
°ü·Ã URL CVE-2018-11091,CVE-2018-12126,CVE-2018-12127,CVE-2018-12130,CVE-2019-0708,CVE-2019-0725,CVE-2019-0734,CVE-2019-0758,CVE-2019-0820,CVE-2019-0863 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)