CVE-2015-6867, CVE-2015-6356
[º¸¾È´º½º ÁÖ¼ÒÇü] ÇöÁö ½Ã°¢À¸·Î 11¿ù 4ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 4ÀÏ¿¡¼ 5ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÔ´Ï´Ù.
1. CVE-2015-7650
Windows¡¤OS X¿ë Adobe Reader ¹× Acrobat 10.x, 10.1.16, 11.x, 11.0.13 ÀÌÀü ¹öÀü, Acrobat ¹× Acrobat Reader DC Classic 2015.006.30094 ÀÌÀü ¹öÀü, Acrobat ¹× Acrobat Reader DC Continuous 2015.009.20069 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ PDF ¹®¼¿¡ ÀÖ´Â Á¶ÀÛµÈ CMAP Å×À̺íÀ» ÅëÇØ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½ÃÅ°°Å³ª ¼ºñ½º °ÅºÎ¸¦ ÇÒ ¼ö ÀÖ½À´Ï´Ù.
2. CVE-2015-7253
Commvault Edge Server 10 R2 ¹öÀüÀÇ À¥ Äֿܼ¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ ÄíÅ° ¾È¿¡ ÀÖ´Â Á¶ÀÛµÈ ½Ã¸®¾óÈµÈ µ¥ÀÌÅ͸¦ ÅëÇØ ÀÓÀÇÀÇ OS ¸í·É¾î¸¦ ½ÇÇàÇÒ ¼ö ÀÖ½À´Ï´Ù.
3. CVE-2015-7244
MobaXterm 8.3 ÀÌÀü ¹öÀüÀÇ µðÆúÆ® ȯ°æ¼³Á¤¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ X11 ÆÐŶÀ» ÅëÇØ ÀÓÀÇÀÇ ¸í·É¾î¸¦ ½ÇÇàÇϰųª ¹Î°¨ÇÑ Á¤º¸¸¦ Å»ÃëÇÒ ¼ö ÀÖ½À´Ï´Ù.
4. CVE-2015-6867
HP Vertica 7.1.1 UDx ¹öÀüÀÇ vertica-udx-zygote ÇÁ·Î¼¼½º¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ Á¶ÀÛµÈ ÆÐŶÀ» ÅëÇØ ÀÓÀÇÀÇ ¸í·É¾î¸¦ ½ÇÇà½Ãų ¼ö ÀÖ½À´Ï´Ù.
5. CVE-2015-6356
Cisco Social Miner 10.0(1) ¹öÀüÀÇ WeChat ÆäÀÌÁö¿¡¼ ¹ß°ßµÈ XSS Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ ¸í½ÃµÇÁö ¾ÊÀº º¤Å͸¦ ÅëÇØ ÀÓÀÇÀÇ À¥ ½ºÅ©¸³Æ®³ª HTMLÀ» »ðÀÔÇÒ ¼ö ÀÖ½À´Ï´Ù.
[±¹Á¦ºÎ ÁÖ¼ÒÇü ±âÀÚ(sochu@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>