English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 50224
À§Çèµµ 40
Æ÷Æ® 139.445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í ¿ø°Ý Windows È£½ºÆ®¿¡ ¼³Ä¡µÈ Adobe Flash PlayerÀÇ ¹öÀüÀº ¹öÀü 29.0.0.171°ú °°°Å³ª ±× ÀÌÀü¹öÀüÀ̸ç, ´ÙÁß Ãë¾àÁ¡ÀÌ Á¸ÀçÇÕ´Ï´Ù.

- À¯Çü È¥¶õ (Type Confusion) Ãë¾àÁ¡ÀÌ ÀÖ½À´Ï´Ù. ¾Ç¿ë¿¡ ¼º°øÇϸé ÇöÀç »ç¿ëÀÚÀÇ ÄÁÅؽºÆ®¿¡¼­ ÀÓÀÇ Äڵ尡 ½ÇÇàµÉ ¼ö ÀÖ½À´Ï´Ù. (CVE-2018-4945)

- Á¤¼ö ¿À¹öÇ÷ΠÃë¾àÁ¡ÀÌ ÀÖ½À´Ï´Ù. ¼º°øÀûÀÎ °ø°ÝÀº Á¤º¸ À¯Ãâ·Î À̾îÁú ¼ö ÀÖ½À´Ï´Ù. (CVE-2018-5000)

- ¹üÀ§¸¦ ¹þ¾î³­ Àбâ Ãë¾àÁ¡ÀÌ ÀÖ½À´Ï´Ù. ¼º°øÀûÀÎ °ø°ÝÀº Á¤º¸ À¯Ãâ·Î À̾îÁú ¼ö ÀÖ½À´Ï´Ù. (CVE-2018-5001)

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ È£½ºÆ®·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ´Â °ü¸®ÀÚ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
https://helpx.adobe.com/security/products/flash-player/apsb18-19.html
https://helpx.adobe.com/flash-player/kb/archived-flash-player-versions.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Adobe Flash Player 29.0.0.171 ¶Ç´Â ÀÌÀüÀÇ ¹öÀüµé
Linux Any version
Microsoft Windows Any version
ÇØ°áÃ¥ ´ÙÀ½ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Adobe Flash PlayerÀÇ °¡Àå ÃֽŠ¹öÀü(29.0.0.171 ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù: http://get.adobe.com/kr/flashplayer/
°ü·Ã URL CVE-2018-4945,CVE-2018-5000,CVE-2018-5001,CVE-2018-5002 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)