CVE-2018-1000099, CVE-2018-8087
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 3¿ù 12ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 12ÀÏ¿¡¼ 13ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
[À̹ÌÁö = iclickart]
1. CVE-2018-1000096
brianleroux tiny-json-http ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î The LibrariesÀÇ ÇÙ½É ±â´ÉÀÇ SSL ÀÎÁõ¼°¡ ºÎÀçÇÏ´Ù. Áß°£ÀÚ °ø°ÝÀÌ °¡´ÉÇØÁø´Ù.
2. CVE-2018-1000097
Sharutils sharutils (unshar command) 4.15.2 ¹öÀüÀÇ CloudÀÇ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ¹öÆÛ ¿À¹öÇ÷ο츦 ÀÏÀ¸Å°°Å³ª ÀÓÀÇÀÇ Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
3. CVE-2018-1000098
Teluu PJSIP 2.7.1 ¹öÀü ¹× ±× ÀÌÀü ¹öÀüÀÇ Á¤¼ö ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ Ưº°È÷ Á¶ÀÛµÈ ¸Þ½ÃÁö¸¦ º¸³¿À¸·Î½á DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2018-1000099
Teluu PJSIP 2.7.1 ¹öÀü ¹× ±× ÀÌÀü ¹öÀüÀÇ Null/Uninitialized Pointer Ãë¾àÁ¡À¸·Î °ø°ÝÀÚ°¡ ƯÁ¤ ¸Þ½ÃÁö¸¦ Á¶ÀÛÇØ ½Ã½ºÅÛ ¸¶ºñ¸¦ ÀÏÀ¸Å³ ¼ö ÀÖ´Ù.
5. CVE-2018-8087
¸®´ª½º Ä¿³Î 4.15.9±îÁö ¹öÀüÀÇ drivers/net/wireless/mac80211_hwsim.cÀÇ hwsim_new_radio_nl ÇÔ¼öÀÇ ¸Þ¸ð¸® À¯Ãâ Ãë¾àÁ¡À¸·Î ·ÎÄÃÀÇ »ç¿ëÀÚ°¡ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>