IPv6 ÆÐŶ 󸮰úÁ¤¼ DOS ¹ß»ýÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡ ÆÐÄ¡ ¾ÆÁ÷
[º¸¾È´º½º ¹Î¼¼¾Æ] Cisco(½Ã½ºÄÚ)°¡ ÀÚ»ç Á¦Ç°¿¡ ¿µÇâÀ» ÁÖ´Â Ãë¾àÁ¡À» ÇØ°áÇÑ º¸¾È ¾÷µ¥ÀÌÆ®¸¦ ¹ßÇ¥Çß´Ù. ÇØ´ç Ãë¾àÁ¡Àº ÀÓÀÇÄÚµå ½ÇÇà ¹× ¼ºñ½º °ÅºÎ µîÀÇ ÇÇÇظ¦ ¹ß»ý½Ãų ¼ö ÀÖ´Ù.
¹ßÇ¥µÈ Ãë¾àÁ¡Àº ¡âOpenSSL¿¡¼ ¹ß»ýÇÏ´Â ´Ù¼ö Ãë¾àÁ¡(CVE-2016-2105, 2106, 2107, 2108, 2109, 2176) ¡âCisco Network Analysis Module À¥ ÀÎÅÍÆäÀ̽º¿¡¼ ¿ø°ÝÄÚµå ½ÇÇàÀÌ °¡´ÉÇÑ Ãë¾àÁ¡(CVE-2016-1388) ¡âCisco Network Analysis ModuleÀÇ IPv6 ÆÐŶ µðÄÚµå ±â´É¿¡¼ ¼ºñ½º °ÅºÎ(DOS)°¡ ¹ß»ýÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡(CVE-2016-1370) ¡âCisco Prime Network Analysis Module ¹× Virtual Network Analysis Module¿¡¼ ¹ß»ýÇÒ ¼ö ÀÖ´Â ¿ø°Ý ¸í·É ½ÇÇà Ãë¾àÁ¡(CVE-2016-1390) ¡âCisco Prime Network Analysis Module ¹× Virtual Network Analysis Module¿¡ Á¶ÀÛµÈ HTTP ¿äûÀ» º¸³» ¿ø°Ý ÄÚµå ½ÇÇàÀÌ °¡´ÉÇÑ Ãë¾àÁ¡(CVE-2016-1391) µîÀÌ´Ù.
¡âÁ¶ÀÛµÈ IPv6 ÆÐŶÀ» ó¸®ÇÏ´Â °úÁ¤¿¡¼ ¼ºñ½º °ÅºÎ(DOS)°¡ ¹ß»ýÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡(CVE-2016-1409)Àº ¾ÆÁ÷ ¾÷µ¥ÀÌÆ®°¡ ¹ßÇ¥µÇÁö ¾Ê¾Ò´Ù.
¿µÇâÀ» ¹Þ´Â Á¦Ç°Àº Âü°í»çÀÌÆ®¿¡ ¸í½ÃµÇ¾î ÀÖ´Â ¡®Affected Products¡¯À» ÅëÇØ Ãë¾àÇÑ Á¦Ç°ÀÎÁö È®ÀÎÇÒ ¼ö ÀÖ´Ù.
Ãë¾àÁ¡ÀÌ ¹ß»ýÇÑ Cisco ¼ÒÇÁÆ®¿þ¾î°¡ ¼³Ä¡µÈ Cisco ÀåºñÀÇ ¿î¿µÀÚ´Â ÇØ´çµÇ´Â Âü°í»çÀÌÆ®¿¡ ¸í½ÃµÇ¾î ÀÖ´Â ¡®Affected Products¡¯ ³»¿ëÀ» È®ÀÎÇØ ÆÐÄ¡¸¦ Àû¿ëÇØ¾ß ÇÑ´Ù.
¾÷µ¥ÀÌÆ®°¡ ¹ßÇ¥µÇÁö ¾ÊÀº Ãë¾àÁ¡(CVE-2016-1409)¿¡ ¿µÇâ ¹Þ´Â Á¦Ç°Àº º¸¾È¾÷µ¥ÀÌÆ®°¡ ¹ßÇ¥µÉ ¶§±îÁö ACL(Access Control List)¿¡ IPv6 ND(Neighbor Discovery) ÆÐŶÀ» Â÷´ÜÇÒ °ÍÀ» ±Ç°íÇÏ°í ÀÖ´Ù.
ÀÌ¿Í °ü·ÃÇÑ ÀÚ¼¼ÇÑ »çÇ×Àº ¾Æ·¡ÀÇ Âü°í»çÀÌÆ®¸¦ È®ÀÎÇϰųª Çѱ¹ÀÎÅͳÝÁøÈï¿ø ÀÎÅͳÝħÇØ´ëÀÀ¼¾ÅÍ(±¹¹ø¾øÀÌ 118)·Î ¹®ÀÇÇÏ¸é µÈ´Ù.
[Âü°í»çÀÌÆ®]
1. https://tools.cisco.com/security/center/publicationListing.x
2. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160504-openssl
3. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160601-prime
4. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160601-prime3
5. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160601-prime1
6. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160601-prime2
7. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160525-ipv6
[¹Î¼¼¾Æ ±âÀÚ(boan5@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>