English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 28787
À§Çèµµ 30
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡´Â 2.0.172.43 ÀÌÀüÀÇ Google ChromeÀÇ ¾î¶² ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. Google ChromeÀº Google¿¡¼­ °³¹ßÇÑ À¥ ºê¶ó¿ìÀúÀÌ´Ù. Google Chrome 2.0.172.43 ÀÌÀüÀÇ ¹öÀüµéÀº ´ÙÁßÀÇ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

- JavaScript ¿£Áø V8¿¡ ÀÖ´Â ¹®Á¦Á¡Àº Ưº°ÇÏ°Ô ¸¸µé¾îÁø JavaScript ÆäÀÌÁö°¡ ¸Þ¸ð¸®¿¡ ÀÖ´Â Á¢±Ù±ÇÇÑ ¿ÜÀÇ µ¥ÀÌÅ͸¦ Á¢±ÙÇϵµ·Ï Çϰųª Google Chrome sandbox³»ÀÇ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇϵµ·Ï ÇÒ ¼ö ÀÖ´Ù. (CVE-2009-2935)

- ºê¶ó¿ìÀú´Â MD2¿Í MD4¿Í °°Àº ¾àÇÑ Çؽà ¾Ë°í¸®ÁòÀ» »ç¿ëÇÏ¿© SSLÀ» ÀÎÁõÇÏ´Â »çÀÌÆ®¿¡ Á¢¼ÓÇÒ ¼ö ÀÖ´Ù. °ø°ÝÀÚ´Â ÇØ´ç ¹®Á¦Á¡À» ÀÌ¿ëÇÏ¿© ÀÎÁõ¼­¸¦ À§Á¶°Å³ª À¯È¿ÇÏÁö ¾ÊÀº À¥»çÀÌÆ®¸¦ À¯È¿ÇÑ HTTPS »çÀÌÆ®·Î À§ÀåÇÒ ¼ö ÀÖ´Ù. (#18725)

- libxml2¿¡ ÀÖ´Â ½ºÅà °í°¥ Ãë¾àÁ¡Àº Google Chrome ÅÇ ÇÁ·Î¼¼½º¿¡ Ãæµ¹À» ÀÏÀ¸Å°°Å³ª Google Chrome sandbox¸¦ ÅëÇØ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà ÇÒ ¼ö ÀÖ´Ù. (CVE-2009-2414)

- libxm2¶óÀ̺귯¸®¿¡ Á¸ÀçÇÏ´Â ´ÙÁßÀÇ »ç¿ë ÈÄ ¹Ýȯ Ãë¾àÁ¡Àº Google Chrome ÅÇ ÇÁ·Î¼¼½º¿¡ Ãæµ¹À» ÀÏÀ¸Å°°Å³ª Google Chrome sandbox¸¦ ÅëÇØ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà ÇÒ ¼ö ÀÖ´Ù. (CVE-2009-2416)

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of this condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* Âü°í »çÀÌÆ®:
http://code.google.com/p/chromium/issues/detail?id=18639
http://code.google.com/p/chromium/issues/detail?id=18725
http://googlechromereleases.blogspot.kr/2009/08/stable-update-security-fixes.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Google Chrome 2.0.172.43 ÀÌÀü ¹öÀü
Microsoft Windows Any version
ÇØ°áÃ¥ Google À¥ »çÀÌÆ®ÀÎ http://www.google.com/chrome/ ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Google ChromeÀÇ °¡Àå ÃֽŠ¹öÀü(2.0.172.43 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2009-2414,CVE-2009-2416,CVE-2009-2935 (CVE)
°ü·Ã URL 36010,36149 (SecurityFocus)
°ü·Ã URL (ISS)