

| ¹øÈ£ | µî·ÏÀÏ | Á¦¸ñ | ||
|---|---|---|---|---|
| 37 | 2010.02.11 | [MS º¸¾È¾÷µ¥ÀÌÆ®]2010³â 2¿ù MS Á¤±â º¸¾È¾÷µ¥ÀÌÆ® ±Ç°í |

[MS º¸¾È¾÷µ¥ÀÌÆ®]2010³â 2¿ù MS Á¤±â º¸¾È¾÷µ¥ÀÌÆ® ±Ç°í
[MS10-003] MS Office Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡ :
- MSO.DLL Buffer Overflow - CVE-2010-0243
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-003.mspx
[MS10-004] MS PowerPoint Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡ :
- PowerPoint File Path Handling Buffer Overflow Vulnerability - CVE-2010-0029
- PowerPoint LinkedSlideAtom Heap Overflow Vulnerability - CVE-2010-0030
- PowerPoint OEPlaceholderAtom placementId Invalid Array Indexing Vulnerability - CVE-2010-0031
- PowerPoint OEPlaceholderAtom Use After Free Vulnerability - CVE-2010-0032
- PowerPoint Viewer TextBytesAtom Record Stack Overflow Vulnerability - CVE-2010-0033
- Office PowerPoint Viewer TextCharsAtom Record Stack Overflow Vulnerability - CVE-2010-0034
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-004.mspx
[MS10-005] MS Paint Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- MS Paint Integer Overflow Vulnerability - CVE-2010-0028
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-005.mspx
[MS10-006] SMB Client Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-006.mspx
[MS10-007] Shell Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ2. °ü·ÃÃë¾àÁ¡
- URL Validation Vulnerability - CVE-2010-0027
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-007.mspx
[MS10-008] ActiveX Kill Bits ´©Àû º¸¾È¾÷µ¥ÀÌÆ®
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- Microsoft Data Analyzer ActiveX Control Vulnerability - CVE-2010-0252
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-008.mspx
[MS10-009] TCP/IP Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦¿µÇâ
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- ICMPv6 Router Advertisement Vulnerability - CVE-2010-0239
- Header MDL Fragmentation Vulnerability – CVE-2010-0240
- ICMPv6 Route Information Vulnerability - CVE-2010-0241
- TCP/IP Selective Acknowledgement Vulnerability – CVE-2010-0242
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-009.mspx
[MS10-010] Hyper-V Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¼ºñ½º °ÅºÎ ¹®Á¦
1. ¿µÇâ2. °ü·ÃÃë¾àÁ¡
- Hyper-V Instruction Set Validation Vulnerability - CVE-2010-0026
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-010.mspx
[MS10-011] CSRSS Ãë¾àÁ¡À¸·Î ÀÎÇÑ ±ÇÇÑ »ó½Â ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- CSRSS Local Privilege Elevation Vulnerability – CVE-2010-0023
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-011.mspx
[MS10-012] SMB Server Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- SMB Pathname Overflow Vulnerability - CVE-2010-0020
- SMB Memory Corruption Vulnerability - CVE-2010-0021
- SMB Null Pointer Vulnerability - CVE-2010-0022
- SMB NTLM Authentication Lack of Entropy Vulnerability - CVE-2010-0231
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-012.mspx
[MS10-013] DirectShow Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¿ø°ÝÄÚµå½ÇÇà ¹®Á¦
1. ¿µÇâ2. °ü·ÃÃë¾àÁ¡
- DirectShow Heap Overflow Vulnerability - CVE-2010-0250
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-013.mspx
[MS10-014] Kerberos Ãë¾àÁ¡À¸·Î ÀÎÇÑ ¼ºñ½º °ÅºÎ ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- Kerberos Null Pointer Dereference Vulnerability - CVE-2010-0035
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-014.mspx
[MS10-015] À©µµ¿ìÁî Ä¿³Î Ãë¾àÁ¡À¸·Î ÀÎÇÑ ±ÇÇÑ »ó½Â ¹®Á¦
1. ¿µÇâ
- °ø°ÝÀÚ°¡ ¿µÇâ ¹Þ´Â ½Ã½ºÅÛ¿¡ ´ëÇØ ¿ÏÀüÇÑ ±ÇÇÑ È¹µæ
2. °ü·ÃÃë¾àÁ¡
- Windows Kernel Exception Handler Vulnerability - CVE-2010-0232
- Windows Kernel Double Free Vulnerability - CVE-2010-0233
3. ÂüÁ¶ »çÀÌÆ® : http://www.microsoft.com/korea/technet/security/Bulletin/MS10-015.mspx


