[º¸¾È´º½º ±è°æ¾Ö ±âÀÚ] ¾îµµºñ(Adobe)»ç´Â Adobe RoboHelp, Flash Player ¹× ColdFusion¿¡ ¿µÇâÀ» ÁÖ´Â Ãë¾àÁ¡À» ÇØ°áÇÑ º¸¾È ¾÷µ¥ÀÌÆ®¸¦ ¹ßÇ¥Çß´Ù. ³·Àº ¹öÀü »ç¿ëÀÚ´Â ¾Ç¼ºÄÚµå °¨¿°¿¡ Ãë¾àÇÒ ¼ö ÀÖ¾î ÃֽŠ¹öÀüÀ¸·Î ¾÷µ¥ÀÌÆ®ÇØ¾ß ÇÑ´Ù.
¡ãÃë¾àÁ¡¿¡ ¿µÇâÀ» ¹Þ´Â Á¦Ç°[À̹ÌÁö=Çѱ¹ÀÎÅͳÝÁøÈï¿ø »çÀÌÆ® ĸó]
¸ÕÀú Adobe RoboHelp¿¡¼ ¹ß»ýÇÏ´Â Ãë¾àÁ¡Àº XSSÀ¸·Î ¿¬°è °¡´ÉÇÑ ÀÔ·Â À¯È¿¼º °Ë»ç Ãë¾àÁ¡(CVE-2017-3104)°ú ¿ÀÇ ¸®´ÙÀÌ·ºÆ® °ø°ÝÀ¸·Î À̾îÁú ¼ö ÀÖ´Â ÀÔ·Â À¯È¿¼º °Ë»ç Ãë¾àÁ¡CVE-2017-3105)ÀÌ´Ù.
´ÙÀ½À¸·Î Adobe Flash Player¿¡¼ ¹ß»ýÇÏ´Â 2°³ÀÇ Ãë¾àÁ¡Àº ¿ø°Ý ÄÚµå ½ÇÇàÀ¸·Î À̾îÁú ¼ö ÀÖ´Â ¸Þ¸ð¸® ¼Õ»ó Ãë¾àÁ¡(CVE-2017-11281, CVE-2017-11282)ÀÌ´Ù.
À̾î Adobe ColdFusion¿¡¼ ¹ß»ýÇÏ´Â 4°³ÀÇ Ãë¾àÁ¡Àº Á¤º¸ ³ëÃâ·Î À̾îÁú ¼ö ÀÖ´Â XML ÆÄ½Ì Ãë¾àÁ¡(CVE-2017-11286), Á¤º¸ ³ëÃâ·Î À̾îÁú ¼ö ÀÖ´Â XSS Ãë¾àÁ¡(CVE-2017-11285), ¿ø°Ý ÄÚµå ½ÇÇàÀ¸·Î À̾îÁú ¼ö ÀÖ´Â µ¥ÀÌÅÍ ¿ªÁ÷·ÄÈ Ãë¾àÁ¡(CVE-2017-11283, CVE-2017-11284)ÀÌ´Ù.
¿µÇâÀ» ¹Þ´Â Á¦Ç°Àº Adobe RoboHelp, Adobe Flash Player, Adobe ColdFusion µîÀÌ´Ù. µû¶ó¼ Adobe RoboHelp »ç¿ëÀÚ´Â À©µµ¿ìÁî RoboHelp »ç¿ëÀÚ´Â ÇØ´çÇÏ´Â ¼ÒÇÁÆ®¿þ¾î¿¡ µû¶ó ÃֽŠ¹öÀüÀ¸·Î ¾÷µ¥ÀÌÆ®¸¦ Àû¿ëÇØ¾ß ÇÑ´Ù.
Adobe Flash PlayerÀÇ °æ¿ì À©µµ¿ìÁî, ¸Æ, ¸®´ª½º ȯ°æÀÇ Adobe Flash Player Desktop runtime »ç¿ëÀÚ´Â 27.0.0.130 ¹öÀüÀ¸·Î ¾÷µ¥ÀÌÆ®ÇØ¾ß ÇÑ´Ù. Adobe Flash Player Download Center(https://get.adobe.com/flashplayer/)¿¡ ¹æ¹®ÇØ ÃֽŠ¹öÀüÀ» ¼³Ä¡Çϰųª ÀÚµ¿ ¾÷µ¥ÀÌÆ®¸¦ ÇÏ¸é µÈ´Ù.
Adobe Flash Player°¡ ¼³Ä¡µÈ ±¸±Û Å©·Ò(Google Chrome)Àº ÀÚµ¿À¸·Î ÃֽŠ¾÷µ¥ÀÌÆ® ¹öÀüÀ» Àû¿ëÇÏ°í, Windows 10, Windows 8.1, Microsoft Edge, ÀÎÅÍ³Ý ÀͽºÇ÷η¯ 11¿¡ Adobe Flash Player¸¦ ¼³Ä¡ÇÑ »ç¿ëÀÚ´Â ÀÚµ¿À¸·Î ÃֽŠ¾÷µ¥ÀÌÆ®¸¦ Àû¿ëÇÏ¸é µÈ´Ù.
Adobe ColdFusion »ç¿ëÀÚ¿Í ColdFusion(2016 ¹öÀü) »ç¿ëÀÚ´Â
http://helpx.adobe.com/coldfusion/kb/coldfusion-2016-update-5.html
»çÀÌÆ®¿¡ ¹æ¹®ÇØ ÇÖÇȽº ¼³Ä¡ÇÏ¸é µÈ´Ù. ColdFusion 11 »ç¿ëÀÚ´Â
https://helpx.adobe.com/coldfusion/kb/coldfusion-11-update-13.html
»çÀÌÆ®¿¡ ¹æ¹®ÇØ ÇÖÇȽº¸¦ ¼³Ä¡ÇÏ¸é µÈ´Ù.
À̹ø ¾÷µ¥ÀÌÆ®¿Í °ü·ÃÇØ Á»´õ ÀÚ¼¼ÇÑ »çÇ×Àº Çѱ¹ÀÎÅͳÝÁøÈï¿ø ÀÎÅͳÝħÇØ´ëÀÀ¼¾ÅÍ(±¹¹ø¾øÀÌ 118)¿¡ ¹®ÀÇÇÏ¸é µÈ´Ù.
[Âü°í»çÀÌÆ®]
[1] https://helpx.adobe.com/security/products/robohelp/apsb17-25.html
[2] https://helpx.adobe.com/security/products/flash-player/apsb17-28.html
[3] https://helpx.adobe.com/security/products/coldfusion/apsb17-30.html
[±è°æ¾Ö ±âÀÚ(boan3@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>