์‚ฌ์ดํŠธ ๋ฃจํŠธ ์™ธ๋ถ€์—์„œ ํŒŒ์ผ์„ ์ˆ˜์‹ ํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•˜๋Š” Apache 2.4.49 http ์„œ๋ฒ„์˜ ์ทจ์•ฝ์ 

Apache 2.4.50 http ์„œ๋ฒ„์— ๋Œ€ํ•œ ๊ธด๊ธ‰ ์—…๋ฐ์ดํŠธ๊ฐ€ ์ƒ์„ฑ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด๋Š” ์ด๋ฏธ ์ ๊ทน์ ์œผ๋กœ ์•…์šฉ๋œ 0์ผ ์ทจ์•ฝ์ (CVE-2021-41773)์„ ์ œ๊ฑฐํ•˜์—ฌ ์‚ฌ์ดํŠธ ๋ฃจํŠธ ๋””๋ ‰ํ„ฐ๋ฆฌ ์™ธ๋ถ€ ์˜์—ญ์˜ ํŒŒ์ผ์— ์•ก์„ธ์Šคํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ค๋‹ˆ๋‹ค. ์ด ์ทจ์•ฝ์ ์„ ์ด์šฉํ•˜๋ฉด http ์„œ๋ฒ„๊ฐ€ ์‹คํ–‰๋˜๋Š” ์‚ฌ์šฉ์ž๊ฐ€ ์ฝ์„ ์ˆ˜ ์žˆ๋Š” ์ž„์˜์˜ ์‹œ์Šคํ…œ ํŒŒ์ผ๊ณผ ์›น ์Šคํฌ๋ฆฝํŠธ์˜ ์†Œ์Šค ํ…์ŠคํŠธ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๊ฐœ๋ฐœ์ž๋“ค์€ 17์›” XNUMX์ผ์— ์ด ๋ฌธ์ œ์— ๋Œ€ํ•ด ํ†ต๋ณด ๋ฐ›์•˜์ง€๋งŒ, ์›น ์‚ฌ์ดํŠธ๋ฅผ ๊ณต๊ฒฉํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜๋Š” ์ทจ์•ฝ์ ์ด ๋„คํŠธ์›Œํฌ์— ๊ธฐ๋ก๋œ ์ดํ›„ ์˜ค๋Š˜์—์„œ์•ผ ์—…๋ฐ์ดํŠธ๋ฅผ ๋ฆด๋ฆฌ์Šคํ•  ์ˆ˜ ์žˆ์—ˆ์Šต๋‹ˆ๋‹ค.

์ทจ์•ฝ์ ์˜ ์œ„ํ—˜์„ ์™„ํ™”ํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ๋ฌธ์ œ๊ฐ€ ์ตœ๊ทผ ๋ฆด๋ฆฌ์Šค๋œ ๋ฒ„์ „ 2.4.49์—๋งŒ ๋‚˜ํƒ€๋‚˜๊ณ  ๋ชจ๋“  ์ด์ „ ๋ฆด๋ฆฌ์Šค์—๋Š” ์˜ํ–ฅ์„ ๋ฏธ์น˜์ง€ ์•Š๋Š”๋‹ค๋Š” ๊ฒƒ์ž…๋‹ˆ๋‹ค. ๋ณด์ˆ˜์ ์ธ ์„œ๋ฒ„ ๋ฐฐํฌํŒ์˜ ์•ˆ์ •์ ์ธ ๋ถ„๊ธฐ์—์„œ๋Š” ์•„์ง 2.4.49 ๋ฆด๋ฆฌ์Šค(Debian, RHEL, Ubuntu, SUSE)๋ฅผ ์‚ฌ์šฉํ•˜์ง€ ์•Š์•˜์ง€๋งŒ ์ด ๋ฌธ์ œ๋Š” Fedora, Arch Linux, Gentoo์™€ ๊ฐ™์€ ์ง€์†์ ์œผ๋กœ ์—…๋ฐ์ดํŠธ๋˜๋Š” ๋ฐฐํฌํŒ๊ณผ FreeBSD ํฌํŠธ์— ์˜ํ–ฅ์„ ๋ฏธ์ณค์Šต๋‹ˆ๋‹ค.

์ด ์ทจ์•ฝ์ ์€ URI์˜ ๊ฒฝ๋กœ๋ฅผ ์ •๊ทœํ™”ํ•˜๊ธฐ ์œ„ํ•œ ์ฝ”๋“œ๋ฅผ ๋‹ค์‹œ ์ž‘์„ฑํ•˜๋Š” ๋™์•ˆ ๋„์ž…๋œ ๋ฒ„๊ทธ๋กœ ์ธํ•ด ๋ฐœ์ƒํ•ฉ๋‹ˆ๋‹ค. ์ด๋กœ ์ธํ•ด ๊ฒฝ๋กœ์˜ "%2e"๋กœ ์ธ์ฝ”๋”ฉ๋œ ์  ๋ฌธ์ž ์•ž์— ๋‹ค๋ฅธ ์ ์ด ์žˆ์œผ๋ฉด ์ •๊ทœํ™”๋˜์ง€ ์•Š์Šต๋‹ˆ๋‹ค. ๋”ฐ๋ผ์„œ ์š”์ฒญ์— ".%2e/" ์‹œํ€€์Šค๋ฅผ ์ง€์ •ํ•˜์—ฌ ์›์‹œ "../" ๋ฌธ์ž๋ฅผ ๊ฒฐ๊ณผ ๊ฒฝ๋กœ๋กœ ๋Œ€์ฒดํ•  ์ˆ˜ ์žˆ์—ˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด "https://example.com/cgi-bin/.%2e/.%2e/.%2e/.%2e/etc/passwd" ๋˜๋Š” "https://example.com/cgi"์™€ ๊ฐ™์€ ์š”์ฒญ์ž…๋‹ˆ๋‹ค. -bin /.%2e/%2e%2e/%2e%2e/%2e%2e/etc/hosts"๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด "/etc/passwd" ํŒŒ์ผ์˜ ๋‚ด์šฉ์„ ๊ฐ€์ ธ์˜ฌ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

"๋ชจ๋‘ ๊ฑฐ๋ถ€ ํ•„์š”" ์„ค์ •์„ ์‚ฌ์šฉํ•˜์—ฌ ๋””๋ ‰ํ„ฐ๋ฆฌ์— ๋Œ€ํ•œ ์•ก์„ธ์Šค๊ฐ€ ๋ช…์‹œ์ ์œผ๋กœ ๊ฑฐ๋ถ€๋œ ๊ฒฝ์šฐ์—๋Š” ๋ฌธ์ œ๊ฐ€ ๋ฐœ์ƒํ•˜์ง€ ์•Š์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ๋ถ€๋ถ„ ๋ณดํ˜ธ์˜ ๊ฒฝ์šฐ ๊ตฌ์„ฑ ํŒŒ์ผ์— ๋‹ค์Œ์„ ์ง€์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๋ชจ๋‘ ๊ฑฐ๋ถ€ํ•ด์•ผ ํ•จ

Apache httpd 2.4.50์€ HTTP/2021 ํ”„๋กœํ† ์ฝœ์„ ๊ตฌํ˜„ํ•˜๋Š” ๋ชจ๋“ˆ์— ์˜ํ–ฅ์„ ๋ฏธ์น˜๋Š” ๋˜ ๋‹ค๋ฅธ ์ทจ์•ฝ์ (CVE-41524-2)๋„ ์ˆ˜์ •ํ•ฉ๋‹ˆ๋‹ค. ์ด ์ทจ์•ฝ์ ์œผ๋กœ ์ธํ•ด ํŠน๋ณ„ํžˆ ์ œ์ž‘๋œ ์š”์ฒญ์„ ๋ณด๋‚ด ๋„ ํฌ์ธํ„ฐ ์—ญ์ฐธ์กฐ๋ฅผ ์‹œ์ž‘ํ•˜๊ณ  ํ”„๋กœ์„ธ์Šค๋ฅผ ์ค‘๋‹จ์‹œํ‚ฌ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ด ์ทจ์•ฝ์ ์€ ๋ฒ„์ „ 2.4.49์—์„œ๋งŒ ๋‚˜ํƒ€๋‚ฉ๋‹ˆ๋‹ค. ๋ณด์•ˆ ํ•ด๊ฒฐ ๋ฐฉ๋ฒ•์œผ๋กœ HTTP/2 ํ”„๋กœํ† ์ฝœ ์ง€์›์„ ๋น„ํ™œ์„ฑํ™”ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์ถœ์ฒ˜ : opennet.ru

์ฝ”๋ฉ˜ํŠธ๋ฅผ ์ถ”๊ฐ€