English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28781
À§Çèµµ 40
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡´Â 3.5.3 ÀÌÀüÀÇ Mozilla FirefoxÀÇ ¾î¶² ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. Mozilla´Â Mozilla ÇÁ·ÎÁ§Æ®¿¡ ÀÇÇØ °³¹ßµÈ °ø°³ ¼Ò½º ±â¹ÝÀÇ À¥ ºê¶ó¿ìÀúÀÌ´Ù. Mozilla Firefox 3.5.3 ÀÌÀüÀÇ 3.5.x ¹öÀüµéÀº ´ÙÀ½ÀÇ Ãë¾àÁ¡À» Æ÷ÇÔÇÏ´Â ´ÙÁßÀÇ Ãë¾àÁ¡µéÀÌ Á¸ÀçÇÑ´Ù.

- ¸Þ¸ð¸® ¼Õ»ó Ãë¾àÁ¡µé·Î ÀÎÇØ ÀÓÀÇÀÇ Äڵ尡 ¼öÇàµÉ ¼ö ÀÖ´Ù. (MFSA 2009-47)

- XUL Æ®¸® ±¸Á¶ÀÇ Ä®·³ 󸮽Ã, ÇØÁ¦µÈ Æ÷ÀÎÅ͸¦ Á¦´ë·Î ó¸®ÇÏÁö ¸øÇÏ´Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ´Ù. (MFSA 2009-49)

- ÀÓÀÇÀÇ À¯´ÏÄڵ带 Æ÷ÇÔÇÏ´Â URLÀÌ Å« line-height °ªÀ» °¡Áö°Ô µÇ¸é À§Ä¡ Ç¥½ÃÁÙ¿¡ Á¤È®ÇÏ°Ô Ç¥½ÃµÇÁö ¾Ê´Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© »ç¿ëÀÚ°¡ ¾ÇÀÇÀûÀÎ »çÀÌÆ®¿¡ Á¢¼ÓÇßÀ½À» ¼û±æ ¼ö ÀÖ´Ù. (MFSA 2009-50)

- °ø°ÝÀÚ´Â ¡®BrowserFeedWriter¡¯ ÄÄÆ÷³ÍÆ®¸¦ ÀÌ¿ëÇÏ¿©, Chrome ±ÇÇÑÀ» °¡Áö°í ÀÚ¹Ù½ºÅ©¸³Æ® Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ´Ù. (MFSA 2009-51)

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.mozilla.org/security/announce/2009/mfsa2009-47.html
http://www.mozilla.org/security/announce/2009/mfsa2009-49.html
http://www.mozilla.org/security/announce/2009/mfsa2009-50.html
http://www.mozilla.org/security/announce/2009/mfsa2009-51.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Mozilla Project, Firefox 3.5.3 ÀÌÀüÀÇ 3.5.x ¹öÀüµé
Microsoft Windows Any version
Linux Any version
ÇØ°áÃ¥ Mozilla Firefox ´Ù¿î·Îµå À¥ ÆäÀÌÁöÀÎ http://www.mozilla.or.kr/ko/ ¿¡¼­ FirefoxÀÇ °¡Àå ÃֽŠ¹öÀü(3.5.3 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2009-3072,CVE-2009-3073,CVE-2009-3077,CVE-2009-3078,CVE-2009-3079 (CVE)
°ü·Ã URL 36343 (SecurityFocus)
°ü·Ã URL (ISS)