CVE-2018-6910, CVE-2017-15699
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 2¿ù 13ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 13ÀÏ¿¡¼ 14ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
[À̹ÌÁö = iclickart]
1. CVE-2018-6953
CCN-lite 2 ¹öÀüÀÇ NDNTLVÀÇ ParserÀÇ Ãë¾àÁ¡À¸·Î ƯÁ¤ ¿ä¼ÒÀÇ ±æÀÌ ÇÊµå °ªÀÌ ½ÇÁ¦ °ª°ú ÀÏÄ¡ÇÏÁö ¾Ê´Â´Ù. ¹öÆÛ ¿À¹öÇÃ·Î¿ì °ø°ÝÀÌ °¡´ÉÇØÁø´Ù.
2. CVE-2018-6954
systemd 237±îÁö ¹öÀüÀÇ systemd-tmpfilesÀÇ Ãë¾àÁ¡À¸·Î ·ÎÄÃÀÇ »ç¿ëÀÚ°¡ ÀÓÀÇÀÇ ÆÄÀÏ¿¡ ´ëÇÑ ¼ÒÀ¯±ÇÀ» °¡Á®°¥ ¼ö ÀÖ°Ô µÈ´Ù.
3. CVE-2018-5459
WAGO PFC200 Series 3S CoDeSys Runtime 2.3.X ¹öÀü, 2.4.X ¹öÀüÀÇ Improper Authentication Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ±ÇÇÑÀÌ ¾ø´Â ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2018-6910
DedeCMS 5.7 ¹öÀüÀÇ include/downmix.inc.php ȤÀº inc/inc_archives_functions.phpÀÇ Ãë¾àÁ¡À¸·Î ¿ø°Ý °ø°ÝÀÌ °¡´ÉÇØÁø´Ù.
5. CVE-2017-15699
Apache Qpid Dispatch Router 0.7.0 ¹öÀü°ú 0.8.0 ¹öÀüÀÇ DoS Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ »ç¿ëÀÚ°¡ Á¶ÀÛµÈ AMQP ÇÁ·¹ÀÓÀ» Àü¼ÛÇØ ½Ã½ºÅÛÀ» Á¾·á½Ãų ¼ö ÀÖ°Ô µÈ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>