[º¸¾È´º½º ±Ç ÁØ] MS11-100 NET Framework¿¡¼ ¹ß»ýÇÏ´Â Ãë¾àÁ¡À¸·Î ÀÎÇØ ÀÎÁõµÇÁö ¾ÊÀº »ç¿ëÀÚ°¡ Ư¼öÇÏ°Ô Á¦ÀÛµÈ À¥ ¿äûÀ» Àü¼ÛÇÒ °æ¿ì, ±ÇÇÑÀÌ »ó½ÂµÉ ¼ö ÀÖ´Â ¹®Á¦°¡ ¹ß»ýÇÒ ¼ö ÀÖ¾î ÁÖÀÇ°¡ ¿ä¸ÁµÈ´Ù.
ÀÌ¿¡ Çѱ¹ÀÎÅͳÝÁøÈï¿ø ÀÎÅͳÝħÇØ´ëÀÀ¼¾ÅÍ ÃøÀº ÇØ´ç ½Ã½ºÅÛ¿¡ ´ëÇÑ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»çÀÇ Ãë¾àÁ¡ ÆÐÄ¡¸¦ ºü¸¥ ½Ã°£ ³» Àû¿ëÇÒ °ÍÀ» ´çºÎÇßÀ¸¸ç, °ü·Ã Ãë¾àÁ¡Àº ´ÙÀ½°ú °°´Ù.
- Collisions in HashTable May Cause DoS Vulnerability - (CVE-2011-3414)
- Insecure Redirect in .NET Form Authentication Vulnerability - (CVE-2011-3415)
- ASP.Net Forms Authentication Bypass Vulnerability - (CVE-2011-3416)
- ASP.NET Forms Authentication Ticket Caching Vulnerability - (CVE-2011-3417)
¿µÇâ¹Þ´Â ¼ÒÇÁÆ®¿þ¾î
[ÂüÁ¶»çÀÌÆ®]
¿µ¹® : http://technet.microsoft.com/en-us/security/bulletin/MS11-100
ÇÑ±Û : http://technet.microsoft.com/ko-kr/security/bulletin/MS11-100
[±Ç ÁØ ±âÀÚ(editor@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>