CVE-2015-4271, CVE-2015-4273
[º¸¾È´º½º ÁÖ¼ÒÇü] ÇöÁö ½Ã°¢À¸·Î 7¿ù 15ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 15ÀÏ¿¡¼ 16ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÔ´Ï´Ù.
1. CVE-2014-8450
Windows ¹× OS X »óÀÇ Adobe Reader Acrobat 10.x ÀÌÀü ¹öÀü, 10.1.15, 11.x, 11.0.12 ÀÌÀü ¹öÀü ¹× Acrobat Reader DC Classic 2015.006.30060 ÀÌÀü ¹öÀü, Acrobat ¹× Acrobat Reader DC 2015.008.20082 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¸í½ÃµÇÁö ¾ÊÀº º¤Å͸¦ ÅëÇØ Á¤ÇØÁø Á¢¼Ó Á¦ÇÑÀ» ¿ìȸÇÒ ¼ö ÀÖ°Ô ÇØÁְųª ¹Î°¨ÇÑ Á¤º¸¸¦ Å»ÃëÇÒ ¼ö ÀÖ°Ô ÇØÁÝ´Ï´Ù. ÀÌ´Â CVE-2015-4449, CVE-2015-4450, CVE-2015-5088, CVE-2015-5089, CVE-2015-5092µé°ú´Â ´Ù¸¥ Ãë¾àÁ¡ÀÔ´Ï´Ù.
2. CVE-2015-3095
Windows ¹× OS X »óÀÇ Adobe Reader Acrobat 10.x ÀÌÀü ¹öÀü, 10.1.15, 11.x, 11.0.12 ÀÌÀü ¹öÀü ¹× Acrobat Reader DC Classic 2015.006.30060 ÀÌÀü ¹öÀü, Acrobat ¹× Acrobat Reader DC 2015.008.20082 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¸í½ÃµÇÁö ¾ÊÀº º¤Å͸¦ ÅëÇØ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØÁְųª ¼ºñ½º °ÅºÎ¸¦ ÇÒ ¼ö ÀÖ°Ô ÇØÁÝ´Ï´Ù. ÀÌ´Â CVE-2015-5087, CVE-2015-5094, CVE-2015-5100, CVE-2015-5102, CVE-2015-5103, CVE-2015-5104, CVE-2015-5115µé°ú´Â ´Ù¸¥ Ãë¾àÁ¡ÀÔ´Ï´Ù.
3. CVE-2015-4267
Cisco ISE 1.2(0.793), 1.3(0.876), 1.4(0.109), 2.0(0.147), 2.0(0.169) ¹öÀüÀÇ À¥ ÇÁ·¹ÀÓ¿öÅ©¿¡¼ ¹ß°ßµÈ CSRF Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ ÀÓÀÇÀÇ »ç¿ëÀÚµéÀÇ ÀÎÁõÀ» ³³Ä¡ÇÒ ¼ö ÀÖ°Ô ÇØÁÝ´Ï´Ù. ÀÌ´Â Bug ID CSCus09940°ú µ¿ÀÏÇÕ´Ï´Ù.
4. CVE-2015-4271
Integrator C ±â±â »ó¿¡ ÀÖ´Â Cisco TelePresence TC 7.3.4 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ ´Ù¼öÀÇ ¿äû ¸Å°³º¯¼öµéÀÌ Æ÷ÇԵǾî ÀÖ´Â º¤Å͵éÀ» ÅëÇØ ÀÎÁõÀ» ¿ìȸÇÒ ¼ö ÀÖ°Ô ÇØÁÝ´Ï´Ù. ÀÌ´Â Bug ID CSCuv00604°ú µ¿ÀÏÇÕ´Ï´Ù.
5. CVE-2015-4273
¼ÒÇÁÆ®¿þ¾î 15.0(912), 15.0(935), 15.0(938)À» °¡Áö°í ÀÖ´Â Cisco ASR 5000 ±â±âÀÇ PGW ÄÄÆ÷³ÍÆ®¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ IP ÆÐŶ¿¡ ÀÖ´Â ±âÇüÀûÀÎ °ø°£À» ÅëÇØ ¼ºñ½º °ÅºÎ¸¦ ÇÒ ¼ö ÀÖ°Ô ÇØÁÝ´Ï´Ù. ÀÌ´Â Bug ID CSCut38476¿Í µ¿ÀÏÇÕ´Ï´Ù.
Copyrighted 2015. UBM-Tech. 117153:0515BC
[±¹Á¦ºÎ ÁÖ¼ÒÇü ±âÀÚ(sochu@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>