Ãë¾àÁ¡ID |
50024 |
À§Çèµµ |
40 |
Æ÷Æ® |
139,445 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
SMB |
»ó¼¼¼³¸í |
¿ø°Ý È£½ºÆ®¿¡´Â Oralce(ÀϹÝÀûÀ¸·Î Sun) Java SE ¶Ç´Â ±â¾÷¿ë JavaÀÇ 6 Update 35 º¸´Ù ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. ÇØ´ç ¹öÀü¿¡ Á¸ÀçÇÏ´Â sun.awt.SunToolKitŬ·¡½ºÀÇ ¡®getField¡¯¸Þ¼Òµå¿Í ¡®getMethod¡¯¸Þ¼Òµå¿¡´Â ´Ù¸¥ Ŭ·¡½º¿¡ ´ëÇÑ Á¤º¸¿¡ Á¢±ÙÇÏ´Â °ÍÀ» ÀûÀýÈ÷ Á¦ÇÑÇÏÁö ¸øÇÑ´Ù. ¹øµé·Î Á¦°øµÇ´Â SunToolKitÀ» ÅëÇØ ´Ù¸¥ Ŭ·¡½ºµéÀÇ Çʵ峪 ¸Þ¼Òµå¿¡ ´ëÇÑ Á¤º¸¸¦ ȹµæÇϴµ¥ »ç¿ëµÉ ¼ö ÀÖ´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://www.oracle.com/technetwork/topics/security/alert-cve-2012-4681-1835715.html http://www.oracle.com/technetwork/java/javase/6u35-relnotes-1835788.html
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Oracle JDK / JRE 6 Update 35 ÀÌÀü ¹öÀü Microsoft Windows Any version Linux Any version |
ÇØ°áÃ¥ |
JDK¿Í JREÀÇ °¡Àå ÃֽŠ¹öÀü(Java JDK / JRE 6 Update 35 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ°í ¿µÇâÀÌ ÀÖ´Â ¹öÀüÀº Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù. |
°ü·Ã URL |
CVE-2012-0547 (CVE) |
°ü·Ã URL |
55339 (SecurityFocus) |
°ü·Ã URL |
(ISS) |
|