English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28137
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡´Â 7.0.63.0 ȤÀº 8.0.24.0 ÀÌÀüÀÇ Macromedia Flash PlayerÀÇ ¾î¶² ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. Macromedia Flash PlayerÀÇ 7.0.63.0°ú 8.0.24.0 ÀÌÀüÀÇ ¹öÀüµéÀº Flash (SWF) ÆÄÀÏ ³»¿¡ Æ÷ÇÔµÈ µ¥ÀÌÅ͸¦ Flash Player°¡ ó¸®ÇÏ´Â °úÁ¤¿¡ ÀÖ´Â ¾Ë·ÁÁ® ÀÖÁö ¾ÊÀº ´ÙÁßÀÇ Ãë¾àÁ¡µé·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ¿¡°Ô ÀÓÀÇÀÇ ÄÚµå ½ÇÇàÀ» Çã¿ëÇÒ ¼ö ÀÖ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ¾ÇÀÇÀûÀÎ SWF ÆÄÀÏÀ» Æ÷ÇÔÇÑ Àß Á¶ÀÛµÈ À¥ »çÀÌÆ®¸¦ ¸¸µé ¼ö ÀÖ´Ù. ÀÌ »çÀÌÆ®¸¦ ÇѹøÀÌ¶óµµ ¹æ¹®ÇÏ°Ô µÇ¸é °ø°ÝÀÚÀÇ ¾ÇÀÇÀûÀÎ ½ºÅ©¸³Æ®´Â È£½ºÆÃÇØ ÁÖ´Â »çÀÌÆ®ÀÇ ±ÇÇÑÀ» °¡Áö°í Ç¥Àû »ç¿ëÀÚÀÇ À¥ ºê¶ó¿ìÀú¿¡¼­ ½ÇÇàµÉ °ÍÀÌ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.microsoft.com/technet/security/advisory/916208.mspx
http://www.kb.cert.org/vuls/id/945060
http://secunia.com/advisories/19218/
http://www.us-cert.gov/cas/techalerts/TA06-075A.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Adobe Macromedia Shockwave Player 10.1.0.11°ú ±× ÀÌÀü ¹öÀüµé
Macromedia Breeze Meeding Add-In 5.1°ú ±× ÀÌÀü ¹öÀüµé
Macromedia Flash Debug Player 7.0.14.0°ú ±× ÀÌÀü ¹öÀüµé
Macromedia Flash Player 8.0.22.0°ú ±× ÀÌÀü ¹öÀüµé
Apple Mac OS X Any version
Linux Any version
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ »çÀÌÆ®¸¦ ÂüÁ¶ÇÏ¿© Flash PlayerÀÇ °¡Àå ÃֽŠ¹öÀü(7.0.63.0 ȤÀº 8.0.24.0 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.adobe.com/support/flashplayer/downloads.html
°ü·Ã URL CVE-2006-0024 (CVE)
°ü·Ã URL 17106 (SecurityFocus)
°ü·Ã URL 25005 (ISS)