Solaris 10 Telnet α ༺ Ͽ
2007 2 14 Solaris 10 Telnet Daemon ɰ ǥ ־ϴ.
༺ Ϲ Telnet ɾ Ͽ α Ƿ 赵 ſ ɰմϴ.
1. OS
• 120068-02 ġ Solaris 10
2. ༺
• Solaris 10 Telnet Daemon ִ 0-day༺ Ǿ.
༺ ϴ ̸, Ʈ α ϴ.
༺ Telnet Daemon α μ ġ Ͽ root йȣ ġ ʾƵ
ýۿ α ϵ ϱ Ѵ.
Telnet Daemon root ǰ , ڴ ڽ ϴ ý α ִ.
3.
• Ʒ Ͽ LOG
telnet –l-froot xxx.xxx.xxx.xxx
{f+} { IP}
) telnet –l-froot 192.168.1.10
4.ó
• ġ ذ
5.ġ
- ġ ٷ ( Rebooting ʿ)
1) ġ 뿩θ Ȯ
# showrev –p |grep 120068-02
: ƹ͵ ǥõ .
2)
) /120068-02.zip
3)
# unzip /120068-02.zip
4) ġ
# patchadd 120068-02
5) Ȯ
# telnet –l-froot xxx.xxxx.xxx.xxx
: Password .
[-http://blog.empas.com/kimsds/18526582]