English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28112
À§Çèµµ 30
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í Sun JRE Java Plug-inÀÇ ¹öÀü Á¤º¸¿¡ µû¸£¸é ÇØ´ç ¹öÀü¿¡´Â ½Å·Ú¼º¾ø´Â ¾ÖÇø´¿¡ ÀÇÇÑ ±ÇÇÑ »ó½Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. Sun Microsystems Java Runtime Environment (JRE) ±×¸®°í Software Development Kit (SDK) 1.4.2_07 ÀÌÇÏ ¹öÀüµé, ±×¸®°í 1.5.0_01 ÀÌÇÏ ¹öÀüµéÀº Java Runtime Environment¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î ÀÎÇÏ¿© ¿ø°ÝÀÇ ½Å·Ú¼º¾ø´Â Java ¾îÇø®ÄÉÀ̼ǵéÀÌ »ó½ÂµÈ ±ÇÇÑÀ» ¾ò¾î³¾ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ÀÌ°ÍÀº ±× ¾îÇø®ÄÉÀ̼ǵéÀÌ ·ÎÄÃÀÇ ÆÄÀϵéÀ» Àаųª ¾µ ¼ö ÀÖ°Ô ÇØ ÁÖ¸ç, ÀÓÀÇÀÇ ·ÎÄà ¾îÇø®ÄÉÀ̼ǵéÀ» ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. ÀÌ·¯ÇÑ ÇàÀ§µéÀº Java °¡»ó ¸Ó½Å(machine)¿¡¼­ ÀÛµ¿ÇÏ´Â ½Å·Ú¼º¾ø´Â ¾îÇø®ÄÉÀ̼ǵ鿡 ´ëÇؼ­´Â Á¤»óÀûÀ¸·Î´Â ±ÝÁöµÇ¾î ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://download.oracle.com/sunalerts/1018935.1.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
SDK ¹× JRE 1.4.2_07 ÀÌÇÏ ¹öÀüµé, ±×¸®°í 1.5.0_01 ÀÌÇÏ ¹öÀüµé
Microsoft Windows Any version
Sun Solaris Any version
Linux Any version
ÇØ°áÃ¥ ´ÙÀ½ Sun Alert Notification 101749¸¦ ÂüÁ¶ÇÏ¿© Sun JRE/SDKÀÇ °¡Àå ÃֽŠ¹öÀü(1.4.2_08 ȤÀº 1.5.0 Update 2 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://download.oracle.com/sunalerts/1018935.1.html
°ü·Ã URL CVE-2005-1973,CVE-2005-1974 (CVE)
°ü·Ã URL 13945,13958 (SecurityFocus)
°ü·Ã URL (ISS)