CVE-2017-5596, CVE-2017-5597
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 1¿ù 25ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 25ÀÏ¿¡¼ 26ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
1. CVE-2016-9305
Autodesk FBX-SDK 2017.1 ÀÌÀü ¹öÀüÀÇ FBX Æ÷¸Ë ÆÄÀÏ Ã³¸® ¹× ÄÁ¹öÆÿ¡¼ ¹ß»ýÇÏ´Â ¿À·ù·Î, °ø°ÝÀÚµéÀÌ È°¼ºÈµÇÁö ¾ÊÀº Æ÷ÀÎÅÍ¿¡ Á¢±ÙÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
2. CVE-2016-9306
Autodesk FBX-SDK 2017.1 ÀÌÀü ¹öÀüÀÇ ¸ÖƼÇà ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ DAE Æ÷¸Ë ÆÄÀÏÀ» ÅëÇؼ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
3. CVE-2016-9307
Autodesk FBX-SDK 2017.1 ÀÌÀü ¹öÀüÀÇ ¸ÖƼÇà ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ 3DS Æ÷¸Ë ÆÄÀÏÀ¸ ¤©ÅëÇؼ ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
4. CVE-2017-5596
Wireshark 2.2.0~2.2.3 ¹öÀü, 2.0.0~2.0.9 ¹öÀü, ASTERIX ´ÙÀ̼½ÅÍÀÇ ¹«ÇÑ ·çÇÎ Ãë¾àÁ¡À¸·Î ÆÐŶ ÀÎÁ§¼ÇÀ̳ª º¯ÇüµÈ ĸÃÄ ÆÄÀÏÀ» ÅëÇØ °ø°ÝÀÚ°¡ µ¥ÀÌÅÍ À¯ÇüÀ» ¹Ù²Ü ¼ö ÀÖ°Ô ÇØÁØ´Ù.
5. CVE-2017-5597
Wireshark 2.2.0~2.2.3 ¹öÀü, 2.0.0~2.0.9 ¹öÀü, DHCPv6 ´ÙÀ̼½ÅÍÀÇ ´ë¿ë·® ·çÇÎ Ãë¾àÁ¡À¸·Î ÆÐŶ ÀÎÁ§¼ÇÀ̳ª º¯ÇüµÈ ĸÃÄ ÆÄÀÏÀ» ÅëÇØ °ø°ÝÀÚ°¡ µ¥ÀÌÅÍ À¯ÇüÀ» ¹Ù²Ü ¼ö ÀÖ°Ô ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>