CVE-2016-7891, CVE-2016-7892
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 12¿ù 14ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 14ÀÏ¿¡¼ 15ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
1. CVE-2016-7888
Adobe Digital Editions 4.5.2 ¹× ±× ÀÌÀü ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î ¸Þ¸ð¸® ÁÖ¼Ò À¯Ãâ°ú °ü·ÃµÈ °ø°ÝÀÌ °¡´ÉÇØÁø´Ù.
2. CVE-2016-7889
Adobe Digital Editions 4.5.2 ¹× ±× ÀÌÀü ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î Á¶ÀÛµÈ XML ¿£Æ®¸®µéÀ» ÆĽÌÇÏ´Â µ¥¿¡ ¹®Á¦°¡ ¹ß»ýÇÒ ¼ö ÀÖ´Ù. Á¤º¸ À¯Ãâ·Î À̾îÁú ¼ö ÀÖ´Ù.
3. CVE-2016-7890
Adobe Flash Player 23.0.0.207 ¹× ±× ÀÌÀü ¹öÀü, 11.2.202.644 ¹× ±× ÀÌÀü ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î º¸¾È Á¤Ã¥À» ¿ìȸÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2016-7891
Adobe RoboHelp 2015.0.3 ¹× ±× ÀÌÀü ¹öÀü, RoboHelp 11 ¹× ±× ÀÌÀü ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î ÀԷ°ª È®ÀÎ ÀýÂ÷¿¡ ¹®Á¦°¡ ÀÖ´Ù. XSS °ø°ÝÀÌ °¡´ÉÇØÁø´Ù.
5. CVE-2016-7892
Adobe Flash Player 23.0.0.207 ¹× ±× ÀÌÀü ¹öÀü, 11.2.202.644 ¹× ±× ÀÌÀü ¹öÀüÀÇ Use After Free Ãë¾àÁ¡À¸·Î TextField Ŭ·¡½º¿¡¼ ¹ß»ýÇÑ´Ù. ÀÓÀÇÀÇ ÄÚµå ½ÇÇàÀÌ °¡´ÉÇϵµ·Ï ÇÑ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>