English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28151
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡´Â 9.0 ÀÌÀüÀÇ Macromedia Flash PlayerÀÇ ¾î¶² ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. Macromedia Flash PlayerÀÇ 9.0 ÀÌÀüÀÇ ¹öÀüµéÀº Flash (SWF) ÆÄÀÏ ³»¿¡ Æ÷ÇÔµÈ µ¥ÀÌÅ͸¦ Flash Player°¡ ó¸®ÇÏ´Â °úÁ¤¿¡ ÀÖ´Â ¾Ë·ÁÁ® ÀÖÁö ¾ÊÀº ´ÙÁßÀÇ Ãë¾àÁ¡µé·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ¿¡°Ô ÀÓÀÇÀÇ ÄÚµå ½ÇÇàÀ» Çã¿ëÇÒ ¼ö ÀÖ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ¾ÇÀÇÀûÀÎ SWF ÆÄÀÏÀ» Æ÷ÇÔÇÑ Àß Á¶ÀÛµÈ À¥ »çÀÌÆ®¸¦ ¸¸µé ¼ö ÀÖ´Ù. ÀÌ »çÀÌÆ®¸¦ ÇѹøÀÌ¶óµµ ¹æ¹®ÇÏ°Ô µÇ¸é °ø°ÝÀÚÀÇ ¾ÇÀÇÀûÀÎ ½ºÅ©¸³Æ®´Â È£½ºÆÃÇØ ÁÖ´Â »çÀÌÆ®ÀÇ ±ÇÇÑÀ» °¡Áö°í Ç¥Àû »ç¿ëÀÚÀÇ À¥ ºê¶ó¿ìÀú¿¡¼­ ½ÇÇàµÉ °ÍÀÌ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.fortinet.com/FortiGuardCenter/advisory/FG-2006-20.html
http://www.fortinet.com/FortiGuardCenter/advisory/FG-2006-21.html
http://www.kb.cert.org/vuls/id/474593
http://secunia.com/advisories/20971/
http://securitytracker.com/id?1016448

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Adobe Systems Incorporated, Macromedia Flash Player 9.0 ÀÌÀüÀÇ ¹öÀüµé
Apple Mac OS X Any version
Linux Any version
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ Adobe À¥ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Macromedia Flash PlayerÀÇ °¡Àå ÃֽŠ¹öÀü(9.0.16.0 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=ShockwaveFlash
°ü·Ã URL CVE-2006-3587 (CVE)
°ü·Ã URL 18894 (SecurityFocus)
°ü·Ã URL 27601 (ISS)