CVE-2017-7869, CVE-2017-7870
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 4¿ù 13ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 13ÀÏ¿¡¼ 14ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
1. CVE-2017-7866
FFmpeg 2017-01-23ÀÇ libavcodec/pngdec.cÀÇ decode_zbufÀÇ Ãë¾àÁ¡À¸·Î ½ºÅà ¹öÆÛ ¿À¹öÇ÷οì DoS °ø°ÝÀ» ÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
2. CVE-2017-7867
International Components for Unicode (ICU) for C/C++ 2017-02-13 ÀÌÀü ¹öÀüÀÇ utext_setNativeIndex* ÇÔ¼ö¿Í common/utext.cpp ³» utf8TextAccess ÇÔ¼öÀÇ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
3. CVE-2017-7868
International Components for Unicode (ICU) for C/C++ 2017-02-13 ÀÌÀü ¹öÀüÀÇ utext_moveIndex32* ÇÔ¼ö¿Í common/utext.cpp ³» utf8TextAccess ÇÔ¼öÀÇ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚµéÀÌ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
4. CVE-2017-7869
GnuTLS 2017-02-20 ÀÌÀü ¹öÀüÀÇ opencdk/read-packet.c ³» cdk_pkt_read ÇÔ¼öÀÇ Á¤¼ö ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚµéÀÌ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
5. CVE-2017-7870
LibreOffice 2017-01-02 ÀÌÀü ¹öÀüÀÇ tools/source/generic/poly.cxxÀÇ tools::Polygon::Insert ÇÔ¼öÀÇ Èü ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚµéÀÌ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>