CVE-2016-6262, CVE-2016-6263
1. CVE-2016-5404
FreeIPAÀÇ cert_revoke ¸í·ÉÀÇ Ãë¾àÁ¡À¸·Î ¡°revoke certificate¡± Çã°¡¸¦ È®ÀÎÇÏÁö ¾Ê´Â´Ù. ¿ø°Ý¿¡¼ ½ÂÀÎµÈ »ç¿ëÀÚ°¡ ¡°retrieve certificate¡± Çã¿ëÀ» »ç¿ëÇØ ÀÓÀÇÀÇ ÀÎÁõ¼¸¦ ÆóÁöÇÒ ¼ö ÀÖ´Ù.
2. CVE-2016-6179
H60-L01 Huawei Honor6 ½º¸¶Æ®ÆùÀÇ
software H60-L01C00B850 ÀÌÀüÀÇ H60-L01 ¹öÀü, H60-L11C00B850 ÀÌÀüÀÇ H60-L11 ¹öÀü, H60-L21C00B850 ÀÌÀüÀÇ H60-L21 ¹öÀü, H60-L02C00B850 ÀÌÀüÀÇ H60-L02 ¹öÀü, H60-L12C00B850 ÀÌÀüÀÇ H60-L12 ¹öÀü, H60-L03C01B850 ÀÌÀüÀÇ H60-L03 ¹öÀüÀÌ ¼³Ä¡µÈ Huawei Honor6 ½º¸¶Æ®ÆùÀÇ ¿ÍÀÌÆÄÀÌ ±â´ÉÀÇ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ DoS °ø°ÝÀ» ÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
3. CVE-2016-6261
libidn 1.33 ÀÌÀü ¹öÀüÀÇ lib/idna.cÀÇ idna_to_ascii_4i ÇÔ¼ö¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ DoS °ø°ÝÀ» ÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2016-6262
libidn 1.33 ÀÌÀü ¹öÀüÀÇ idn¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ 0 ¹ÙÀÌÆ® ÀÎDzÀ» ÀÐ¾î¼ out-of-bound¸¦ È°¼ºÈ½ÃŲ ´ÙÀ½ ¹Î°¨ÇÑ Á¤º¸¸¦ ÃëµæÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù. CVE-2015-8949°ú´Â ´Ù¸§ Ãë¾àÁ¡ÀÌ´Ù.
5. CVE-2016-6263
libidn 1.33 ÀÌÀü ¹öÀüÀÇ lib/nfkc.cÀÇ stringprep_utf8_nfkc_normalize ÇÔ¼ö¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ DoS °ø°ÝÀ» ÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>