CVE-2015-8458, CVE-2015-4545
[º¸¾È´º½º ¹®°¡¿ë] ÇöÁö ½Ã°¢À¸·Î 12¿ù 21ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 21ÀÏ¿¡¼ 22ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
1. CVE-2015-7908
Honeywell Midas gas detector 1.13b3 ÀÌÀü ¹öÀü°ú Midas Black gas detector 2.13b3 ÀÌÀü ¹öÀü¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ ³×Æ®¿öÅ©¸¦ ½º´ÏÇÎ Çؼ ¾ÏÈ£¸¦ Å»ÃëÇÏ´Â °Ô °¡´ÉÇØÁø´Ù.
2. CVE-2015-7919
SearchBlox 8.3.1 ÀÌÀüÀÇ 8.3 ¹öÀü¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ config fileÀ» ¼öÁ¤ ¹× ÆíÁýÇÏ´Â °Ô °¡´ÉÇØÁø´Ù. À̷νá DoS °ø°Ý ¿ª½Ã °¡´ÉÇØÁø´Ù.
3. CVE-2015-7937
Schneider Electric Modicon M340 PLC BMXNOx¿Í BMXPx ±â±â ³»¿¡ ÀÖ´Â GoAhead Web ServerÀÇ ½ºÅà ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚµéÀÌ HTTP Basic Authentication µ¥ÀÌÅÍ¿¡¼ ¾ÏÈ£¸¦ ±æ°Ô ÀÔ·ÂÇÔÀ¸·Î½á ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2015-8458
Adobe Reader¿Í Acrobat 10.1.16 ÀÌÀüÀÇ 10.x ¹öÀü°ú 11.0.13 ÀÌÀüÀÇ 11.x ¹öÀü, Acrobat°ú Acrobat Reader DC Classic 2015.006.30094 ÀÌÀü ¹öÀü, Acrobat°ú Acrobat Reader DC Continuous 2015.009.20069 ÀÌÀü ¹öÀü(À©µµ¿ì ¹× OS X¿ë)¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î °ø°ÝÀÚµéÀÌ ´ÙÁß ·¹À̾î PDF ¹®¼¸¦ ÅëÇØ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÏ°Ô ÇØÁØ´Ù. CVE-2015-6696°ú CVE-2015-6698°ú´Â ´Ù¸¥ Ãë¾àÁ¡ÀÌ´Ù.
5. CVE-2015-4545
EMC Isilon OneFS 7.1.1.8 ÀÌÀüÀÇ 7.1 ¹öÀü, 7.2.0.4 ÀÌÀüÀÇ 7.2.0, 7.2.1.1 ÀÌÀüÀÇ 7.2.1 ¹öÀü¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î ¿ø°Ý¿¡¼ ÀÎÁõµÈ °ü¸®ÀÚ°¡ SmartLock ·çÆ® ·Î±×ÀÎ Á¦ÇÑÀ» ¿ìȸÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>