CVE-2018-11035, CVE-2018-11037
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 5¿ù 13ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 13ÀÏ¿¡¼ 14ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
[À̹ÌÁö = iclickart]
1. CVE-2018-11033
xpdf 4.00 ÀÌÀü ¹öÀüÀÇ DCT µðÄÚ´õÀÇ Stream.ccÀÇ DCTStream::readHuffSym ÇÔ¼öÀÇ Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ Á¶ÀÛµÈ JPEG µ¥ÀÌÅ͸¦ ÅëÇÏ¿© DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
2. CVE-2018-10944
Ethereum ERC20 ÅäÅ« ȤÀº Rasputin Online CoinÀÇ ½º¸¶Æ® ÄÁÆ®·¢Æ®ÀÇ request_dividend ÇÔ¼öÀÇ Ãë¾àÁ¡À¸·Î °ø°ÝÀÚµéÀÌ ÀÌ´õ¸¦ ÀüºÎ ÈÉÄ¥ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
3. CVE-2018-11034
2345 Security Guard 3.7 ¹öÀüÀÇ µå¶óÀ̹ö ÆÄÀÏÀÎ 2345NsProtect.sysÀÇ Ãë¾àÁ¡À¸·Î ·ÎÄÃÀÇ »ç¿ëÀÚµéÀÌ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2018-11035
2345 Security Guard 3.7 ¹öÀüÀÇ µå¶óÀ̹ö ÆÄÀÏÀÎ 2345NsProtect.sysÀÇ Ãë¾àÁ¡À¸·Î ·ÎÄÃÀÇ »ç¿ëÀÚµéÀÌ DoS °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
5. CVE-2018-11037
Exiv2 0.25 ¹öÀüÀÇ pngimage.cppÀÇ Exiv2::PngImage::printStructure ÇÔ¼öÀÇ Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ Á¶ÀÛµÈ ÆÄÀÏÀ» ÅëÇØ Á¤º¸ À¯Ãâ °ø°ÝÀ» °¨ÇàÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>