CVE-2015-5325, CVE-2015-5324
[º¸¾È´º½º ÁÖ¼ÒÇü] ÇöÁö ½Ã°¢À¸·Î 11¿ù 27ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 27ÀÏ¿¡¼ 30ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÔ´Ï´Ù.
1. CVE-2015-8214
Siemens SIMATIC CP 343-1 Advanced devices 3.0.44 ÀÌÀü ¹öÀü, CP 343-1 Lean devices, CP 343-1 devices, TIM 3V-IE devices, TIM 3V-IE Advanced devices, TIM 3V-IE DNP3 devices, TIM 4R-IE devices, TIM 4R-IE DNP3 devices, CP 443-1 devices, CP 443-1¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ TCP port 102¿¡ ÀÖ´Â ¼¼¼ÇÀ» ÅëÇØ °ü¸®ÀÚ Á¢¼ÓÀ» Å»ÃëÇÒ ¼ö ÀÖ½À´Ï´Ù.
2. CVE-2015-6848
EMC Isilon OneFS 7.1.x, 7.1.1.5, 7.2.0.x, 7.2.0.3, 7.2.1.x, 7.2.1.1 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î ÀÎÁõµÈ AD »ç¿ëÀÚ°¡ ¿ø°Ý¿¡¼ ¸í½ÃµÇÁö ¾ÊÀº º¤Å͸¦ ÅëÇØ ·çÆ® Ư±ÇÀ» Å»ÃëÇÒ ¼ö ÀÖ½À´Ï´Ù.
3. CVE-2015-5325
CloudBees Jenkins 1.638, LTS 1.625.2 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ JNLP ½½·¹ÀÌºê ·¹¹ö¸®Â¡ÇÔÀ¸·Î¼ ¸¶½ºÅÍ Á¢¼ÓÀ» ÀǵµÀûÀ¸·Î ¿ìȸÇÒ ¼ö ÀÖ½À´Ï´Ù.
4. CVE-2015-5324
CloudBees Jenkins 1.638, LTS 1.625.2 ÀÌÀü ¹öÀü¿¡¼ ¹ß°ßµÈ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¿ø°Ý¿¡¼ queue/api·ÎÀÇ ¿äûÀ» ÅëÇØ ¹Î°¨ÇÑ Á¤º¸¸¦ Å»ÃëÇÒ ¼ö ÀÖ½À´Ï´Ù.
[±¹Á¦ºÎ ÁÖ¼ÒÇü ±âÀÚ(sochu@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>