|
Á¦¸ñ |
[MS º¸¾È¾÷µ¥ÀÌÆ®]2010³â 3¿ù MS Á¤±â º¸¾È¾÷µ¥ÀÌÆ® ±Ç°í |
Á¶È¸¼ö |
3,019°Ç |
[MS10-016] Windows Movie Maker Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
¡à ¿µÇâ
o °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
¡à ¼³¸í
o MSÀÇ µ¿¿µ»ó ÆíÁý °ü·Ã ÇÁ·Î±×·¥ Windows Movie Maker ¹× MS Producer¿¡ ¿ø°ÝÄÚµå ½ÇÇà
°¡´ÉÇÑ ¹öÆÛ¿À¹öÇ÷οì Ãë¾àÁ¡ Á¸Àç
¡Ø Windows Movie Maker : À©µµ¿ìÁî ¿î¿µÃ¼Á¦¿¡ ¼³Ä¡µÇ¾î ÀÖ´Â µ¿¿µ»ó ÆíÁý ÇÁ·Î±×·¥
¡Ø MS Producer : MS ¿ÀÇǽº ¹®¼ µîÀ» µ¿¿µ»ó°ú °°Àº ´Ù¾çÇÑ ¸ÖƼ¹Ìµð¾î ÄÁÅÙÃ÷·Î Á¦ÀÛÇÒ ¼ö
ÀÖµµ·Ï Áö¿øÇÏ´Â ÇÁ·Î±×·¥
o °ø°ÝÀÚ´Â Windows Movie Maker ¹× MS Producer¿¡¼ ¿¾îº¼ ¼ö ÀÖ´Â ÆÄÀÏ(.mswmm µî)À»
Á¶ÀÛÇÏ¿© »ç¿ëÀÚ¿¡°Ô Àü¼ÛÇÏ¿© À̸¦ ¿¾îº¸µµ·Ï À¯µµÇÔ. °ø°ÝÀÌ ¼º°øÇÏ¸é °ø°ÝÀÚ´Â ÇÁ·Î±×·¥
¼³Ä¡, »èÁ¦, °èÁ¤ »ý¼º µî ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ °¡´É
o °ü·ÃÃë¾àÁ¡ :
- Movie Maker and Producer Buffer Overflow Vulnerability – CVE-2010-0265
o ¿µÇâ : ¿ø°ÝÄÚµå½ÇÇà
o Áß¿äµµ : Áß¿ä
¡à ÇØ´ç½Ã½ºÅÛ
o ¿µÇâ ¹Þ´Â ¼ÒÇÁÆ®¿þ¾î
- Windows Movie Maker 2.1 on Windows XP SP2, SP3
- Windows Movie Maker 2.1 on Windows XP Professional x64 Edition SP2
- Windows Movie Maker 6.0, 2.6 on Windows Vista, SP1, SP2
- Windows Movie Maker 6.0 on Windows Vista x64 Edition, SP1, SP2
- Windows Movie Maker 2.6 on Windows 7 32-bit
- Windows Movie Maker 2.6 on Windows 7 x64
¡Ø Windows 7ÀÇ °æ¿ì Ãë¾àÇÑ ¹öÀüÀÇ ¼ÒÇÁÆ®¿þ¾î¸¦ º°µµ·Î ¼³Ä¡ÇÑ °æ¿ì ¿µÇâ ¹ÞÀ½
- Microsoft Producer 2003
o ¿µÇâ ¹ÞÁö ¾Ê´Â ¼ÒÇÁÆ®¿þ¾î
- Microsoft Windows 2000 SP4
- Windows Server 2003 SP2
- Windows Server 2003 x64 Edition SP2
- Windows Server 2003 with SP2 for Itanium-based Systems
- Windows Server 2008 for 32-bit Systems, SP2
- Windows Server 2008 for x64-based Systems, SP2
- Windows Server 2008 for Itanium-based Systems, SP2
- Windows 7 for 32-bit Systems
- Windows 7 for x64-based Systems
- Windows Server 2008 R2 for x64-based Systems
- Windows Server 2008 R2 for Itanium-based Systems
- Windows Live Movie Maker
¡à ÇØ°áÃ¥
o ÇØ´ç ½Ã½ºÅÛ¿¡ ´ëÇÑ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»çÀÇ Ãë¾àÁ¡ ÆÐÄ¡ Àû¿ë
¡à ÂüÁ¶»çÀÌÆ®
o ¿µ¹® : http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx
o ÇÑ±Û : http://www.microsoft.com/korea/technet/security/bulletin/MS10-016.mspx
[MS10-017] MS Office Excel Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
¡à ¿µÇâ
o °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
¡à ¼³¸í
o MS Office ExcelÀÌ Á¶ÀÛµÈ °³Ã¼°¡ Æ÷ÇÔµÈ Excel ÆÄÀÏÀ» ó¸®ÇÒ ¶§ ¸Þ¸ð¸® ¹× ƯÁ¤ Á¤º¸
ÆĽÌ(Parsing) ¹®Á¦·Î ¿ø°ÝÄÚµå ½ÇÇàÀÌ ¹ß»ýÇÏ´Â Ãë¾àÁ¡ Á¸Àç
o °ø°ÝÀÚ´Â Á¶ÀÛµÈ Excel ÆÄÀÏÀ» »ç¿ëÀÚ¿¡°Ô Àü¼ÛÇÏ¿© À̸¦ ¿¾îº¸µµ·Ï À¯µµÇÔ. °ø°ÝÀÌ ¼º°øÇϸé
°ø°ÝÀÚ´Â ÇÁ·Î±×·¥ ¼³Ä¡, »èÁ¦, °èÁ¤ »ý¼º µî ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ °¡´É
o °ü·ÃÃë¾àÁ¡ :
- Microsoft Office Excel Record Memory Corruption Vulnerability - CVE-2010-0257
- Microsoft Office Excel Sheet Object Type Confusion Vulnerability - CVE-2010-0258
- Microsoft Office Excel MDXTUPLE Record Heap Overflow Vulnerability
- CVE-2010-0260
- Microsoft Office Excel MDXSET Record Heap Overflow Vulnerability - CVE-2010-0261
- Microsoft Office Excel FNGROUPNAME Record Uninitialized Memory Vulnerability
- CVE-2010-0262
- Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability
- CVE-2010-0263
- Microsoft Office Excel DbOrParamQry Record Parsing Vulnerability - CVE-2010-0264
o ¿µÇâ : ¿ø°ÝÄÚµå½ÇÇà
o Áß¿äµµ : Áß¿ä
¡à ÇØ´ç½Ã½ºÅÛ
o ¿µÇâ ¹Þ´Â ¼ÒÇÁÆ®¿þ¾î
- Microsoft Office XP SP3
- Microsoft Office 2003 SP3
- 2007 Microsoft Office System SP1, SP2
- Microsoft Office 2004 for Mac
- Microsoft Office 2008 for Mac
- OpenXML File Format Converter for Mac
- Microsoft Office Excel Viewer SP1, SP2
- Microsoft Office Compatibility Pack for Word, Excel, PowerPoint 2007
File Formats SP1, SP2
- Microsoft Office SharePoint Server 2007 SP1, SP2 (32-bit editions)
- Microsoft Office SharePoint Server 2007 SP1, SP2 (64-bit editions)
o ¿µÇâ ¹ÞÁö ¾Ê´Â ¼ÒÇÁÆ®¿þ¾î
- Microsoft Office File Converter Pack
- Microsoft Works 8.5, 9.0
¡à ÇØ°áÃ¥
o ÇØ´ç ½Ã½ºÅÛ¿¡ ´ëÇÑ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»çÀÇ Ãë¾àÁ¡ ÆÐÄ¡ Àû¿ë
¡à ÂüÁ¶»çÀÌÆ®
o ¿µ¹® : http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx
o ÇÑ±Û : http://www.microsoft.com/korea/technet/security/bulletin/MS10-017.mspx
|
|