PHPãCGIã¨ãã¦ä½¿ç¨ããå ´åã«ãªã¢ã¼ãããã³ãã³ãã©ã¤ã³å¼æ°ãæå®ãã¦PHP-CGIãã¤ããªã¼ãå®è¡ã§ããã¨ããèå¼±æ§(CVE-2012-1823)ãçºè¦ãããPHPéçºãã¼ã ã¯PHP 5.3.12ã¨PHP 5.4.2ãå ¬éãããããããèå¼±æ§ãå®å ¨ã«ã¯ä¿®æ£ããã¦ããããæ¹ãã¦èå¼±æ§æ å ±ãã¼ã¿ãã¼ã¹ã«CVE-2012-2311ã¨ãã¦ç»é²ãããã¨ã®ãã¨( threatpostã®è¨äºã Die Eindbazenã®è¨äºã Yet Another PHP Security Blogã®è¨äºã 徳丸浩æ°ã®ããã°è¨äº)ã ãã®èå¼±æ§ã¯2004å¹´ããçºè¦ãããã«åå¨ãã¦ãããã®ã§ãApache mod_cgiã使ç¨ãã¦ããç°å¢ãªã©ãå½±é¿ãåããã¨ãããæªç¨ãããã¨ãªã¢ã¼ããããã¼ã«ã«ãã£ã¹ã¯ä¸ã®ãã¡ã¤ã«ãå®è¡ãããããDoSãå®è¡ããããããå¯è½æ§ããããæ»æè ããµã¼ãã¼ã«ãã¡ã¤ã«ãã¢ãããã¼ãã§ã
{{#tags}}- {{label}}
{{/tags}}