Last modified: Fri Feb 14 12:51:48 2003 +0900 (JST)
Windows 2000 / XP $BMQ!"(BKerberos $BBP1~$N(B password sniffer / cracker$B!"(B KerbCrack $B$@$=$&$G$9!#(B
$B%A%g%`%9%-!<$K$^$D$o$kN.8@Ht8l(B $B$,99?7$5$l$F$^$9!#(B
Symantec AntiVirus Corporate Edition 8.0 $B$N%$%s%9%H!<%k8e!V(BAutoCAD $B$N%Z!<%80cH?(B $B%b%8%e!<%k(B AC1ST15.DLL 017f:655cle3b$B!W$,H/@8$9$k(B $B!#(Bpatch $B$,$"$k$=$&$G!#(B
Norton Ghost 2003 $B$G3NG'$5$l$F$$$kLdBjE@$K$D$$$F(B$B!#(Bliveupdate $B$9$k$H2r7h$5$l$k$h$&$G$9$M!#(B
Microsoft$B$OA4BN$G!H(BTrustworthy Computing$B!I!J?.Mj$G$-$k%3%s%T%e!<%F%#%s%0!K$K$B!!(Bport 135, 137$B!A(B139, 445 $B$,%G%U%)%k%H$G:I$,$l$k$N$O(B 10 $BG/8e!"$H$$$&0UL#$@$m$&$+!#(B
$BC;4|E*$K$O!"@=IJ$N%G%6%$%s!"%W%m%0%i%_%s%0!"@=IJ$N=P2Y;~$N>uBV!=!=$J$I$r8+D>$9$N$@$H$$$&!#6qBNE*$K$O!"%W%m%0%i%`$,;}$DuBV$GITMW$J%5!<%S%9$,N)$A>e$,$C$F$$$J$$$J$I$NBP:v$r;\$9$3$H$r;X$9!#$3$NBh0lCF$,(B2003$BG/$K=P2YM=Dj$N(BWindows .NET Server 2003$B$J$N$@$H$$$&!#(B $B!!(Bport 135, 137$B!A(B139, 445 $B$O!"(BMicrosoft $BE*$K$O!VITMW$J%5!<%S%9!W$G$O$J$$$7!V%;%-%e%j%F%#!&%[!<%k$N$J$$%W%m%0%i%`!W$H$$$&$3$H$J$s$@$m$&$J!#(B $B$=$37PM3$G(B crack $B$5$l$?5!3#$O(B 1 $BBf$b$J$$$s$G$7$g$&!"$-$C$H!#(B
MS02-065 $BOC$G$9$,!"(BMDAC 2.7 $B$,%$%s%9%H!<%k$9$k(B msxml3.dll $B$,!"$J$s$H(B MS02-008 patch $B$h$j$b8E$$$3$H$,H=L@!#(B $B$H$$$&$o$1$G!"$^$?$^$?(B $B3XFb8~$1$N%Z!<%8(B $B$r99?7!#??It$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$BEl7PBg$G8D?M>pJsO3$l!!F~3X4j=q$NM9Aw4uK>
mod_limitipconn.c
$B$H$+(B
mod_conn.c
$B$H$$$&$b$N$,$"$k$s$G$9$M!#(B(info from [IDS-TALK 478])
$B!!(BIE 5.01, 5.5, 6.0 $B$N(B 6 $B$D$N?7$?$J
$B967b
$B$O$$!"$G$-$^$9!#$7$+$7!"%^%$%/%m%=%U%H$O%5%]!<%H5;=Q>pJs(B 810687 $B$r8x3+$7!"(BHTML $B%X%k%W$N%7%g!<%H%+%C%H$r@)8B$9$k%l%8%9%H%j(B $B%-!<@_Dj$K$D$$$F@bL@$7$F$$$^$9!#$3$N%l%8%9%H%j(B $B%-!<$r@_Dj$9$k$H!"967b$B$H$"$k$h$&$K!"AH$_$"$o$;$k$3$H$GG$0U$N%3%^%s%I$r
$B!!(B$B!X%P%0%H%i%C%/!Y$K(BIE$B0-MQ967b%3!<%I$r$=$N$^$^7G:\!";?H]$ON>O@(B $B$NOC$b4XO"$J$N$+$b$7$l$J$$$,!"$$$^$$$A$h$/$o$+$i$J$$!#(B
$B!!$H$j$"$($:E,MQ$7$F$*$1$P(B? ($B%/%l%h%s$7$s$A$c$sIw(B)
2002.12.02 $BDI5-(B:
$B!!(BUnpatched IE security holes$B!"8=:_$O(B 18 $B8D$K$J$C$F$$$^$9!#$+$J$j8:$j$^$7$?!#$=$l$G$b(B 18 $B8D$"$k$s$G$9$,!#(B
$B!!(BMDAC 2.6 $B0JA0$K
$B!!BP:v$H$7$F$O!"
MDAC $B$*$h$S(B RDS $B$rL58z$K$9$k(B (IIS $B$N>l9g(B)
$B$U$D$&$N(B IIS $B4IM}
MDAC 2.7
$B$r%$%s%9%H!<%k$9$k(B
(IIS, IE / Outlook Express $B$N>l9g(B)
Windows XP $B$,1F6A$r
MS02-065 $B=$@5%W%m%0%i%`$rE,MQ$9$k(B
(IIS, IE / Outlook Express $B$N>l9g(B)
MS02-065 $B=$@5%W%m%0%i%`$K$OBg$-$J7g4Y$,$"$k!#(B
$BLdBj$rH/@8$5$;$k(B ActiveX $B%3%s%H%m!<%k$O(B Microsoft $B$K$h$C$F=pL>$5$l$F$7$^$C$F$$$k$?$a!"967b
$B!!=>$C$F!"?d>)$5$l$kBP1~$O(B MDAC 2.7
$B$N%$%s%9%H!<%k$H$J$k!#$7$+$7$3$l$K$bLdBj$,$"$k!#(BMDAC 2.7 $B$K4^$^$l$k(B
msxml3.dll $B$O!"(BMS02-008
$BLdBj$r=$@5:Q$NHG$h$j$b8E$/!"(BMS02-008 $BLdBj$,4^$^$l$F$7$^$C$F$$$k$N$@!#(B
$B$3$N$?$a!"(BMDAC 2.7 $B$r%$%s%9%H!<%k$7$?8e$K!"(BMS02-008
$B=$@5%W%m%0%i%`$rE,MQ$7$F$*$/I,MW$,$"$k!#$?$@$7!"(BIE 6.0 SP1 $B$G$O(B MS02-008 $BLdBj$,=$@5:Q$_$J$N$G!"(BMS02-008 $B=$@5%W%m%0%i%`$rE,MQ$9$kI,MW$O$J$$!#$d$d$3$7$$$M!#(B
$B!!>\:Y$O!";32<$5$s$N(B
$B%Q%C%A$rL58z$K$5$l$k62$l$"$j!$(BWindows$B$N?<9o$J%;%-%e%j%F%#!&%[!<%k$r2r@b$9$k(B
($BF|7P(B IT Pro)
$B$rFI$s$G$/$@$5$$(B (^^;)$B!#(B
$B3XFb8~$1$N%Z!<%8(B
$B$K$b>pJs$,$"$j$^$9(B ($B$,!"3XFb8~$1$J$N$G0lHL$K$OE,MQ$G$-$J$$$+$b$7$l$^$;$s(B)$B!#(B
$B!!(BMS02-065 $B$G$b(B
$B$H$$$&5-=R$,EP>l$7$F$$$^$9$M!#$?$@$7!"(B
$B$H$b$"$j$^$9$N$G$4Cm0U$r!#(BJP418820: [MDAC] $B%$%s%9%H!<%k$7$F$b0lIt$N%U%!%$%k$,(B DLLCACHE $B$KEPO?$5$l$J$$(B
$B$O!":G0-$N>l9g(B OS $B$N:F%$%s%9%H!<%k$,I,MW$H$5$l$F$$$k$N$GMWCm0U!#(B
$B!!(Bhsj $B$5$s$A(B
$B$K(B IIS 5.0 $BMQ$N(B exploit $B$,=P$F$$$^$7$?!#(B
$B!!(B$B:#EY$O!H40A4$JBP:v!I$K$H$s$G$b$J$$I{:nMQ!=!=!V(BWindows$B$N?<9o$J%[!<%k!WB3JT(B
($BF|7P(B IT Pro)$B!#(B
MDAC 2.7 $B$r%$%s%9%H!<%k$7$?8e$G$O!"(BMS02-008
$B$NB>!"(BSQL Server $B$rF0:n$5$;$F$$$k>l9g$O(B
MS02-030,
MS02-040
$B$rE,MQ$9$kI,MW$,$"$kLOMM!#(B
$B!!(BIE$B!"(BOE $B$N0BA4$JMxMQ$K$O9bEY$JCN<1$H>pJs<}=8G=NO$,I,MW!*!)(B (NetSecurity)$B!#(B
MS02-066 $B$O(B MS02-065 $B$N4V0c$$$@$H;W$o$l!#(B
$B3N$+$K:#2s$N;vNc$O$*AFKv$9$.$k$,!"$@$+$i$C$F!"B>$N%V%i%&%6$N>pJs<}=8$,4JC1$C$F%3%H$K$O$J$i$J$$$H;W$&$>!#(B
$B!!(B$B!V(BWindows$B$N?<9o$J%[!<%k!WBP:v$GH/@8$9$k%H%i%V%k$r2r7h$9$k(B ($BF|7P(B IT Pro)$B!#(B
MDAC 2.7 $B%$%s%9%H!<%k$N>\:Y!#$o$+$j$d$9$$!#(B
$B!!(BMDAC 2.7 SP1
$B$,=P$F$$$^$9!#(BMS02-008 (MSXML 3.0 $BMQ$N$_(B), MS02-030, MS02-040 $B$O=$@5$5$l$F$$$k$=$&$G$9!#(B
$B$7$+$7!"(BMDAC 2.7 $B$KB8:_$7$?!"%$%s%9%H!<%k;~$NLdBj$K$D$$$F$O!"(BMDAC 2.7 SP1 $B$G2r>C$5$l$F$$$k$+$I$&$+$h$/$o$+$j$^$;$s!#G0$N$?$a!"(BMDAC 2.7 $B%@%&%s%m!<%I%Z!<%8(B
$B$N5-=R$r$h$/FI$_!"F1MM$NLdBj$,(B MDAC 2.7 SP1 $B$K$b$"$k$b$N$H$7$F%$%s%9%H!<%k$7$?J}$,$h$$$G$7$g$&!#(B$B3XFb8~$1$N%Z!<%8(B$B$b=$@5$+$1$^$7$?!#(B
$BK\LdBj$KBP$9$k40A4$JBP:v$O!"(BMDAC $B%P!<%8%g%s(B 2.7 $B0J9_$rE,MQ$9$k$3$H$G$9!#(BMDAC $B%P!<%8%g%s(B 2.7 $B0J9_$O$3$N@H
$BCm0U(B : MDAC 2.7 $B$rE,MQ$9$k;v$K$h$j!"$3$N5!G=$r;HMQ$9$k%"%W%j%1!<%7%g%s$,@5$7$/F0:n$7$J$/$J$k2DG=@-$,$"$j$^$9!#8=:_$*;H$$$N%"%W%j%1!<%7%g%s$KM?$($k1F6A$K4X$7$F$O!"@=IJ$N3+H/85MM$^$G$43NG'$/$@$5$$!#(B
$B8=:_(B MDAC 2.7 $B$K4X$7$FJ@
2002.12.04 $BDI5-(B:
2002.12.12 $BDI5-(B:
2003.01.21 $BDI5-(B:
$B!!(B2002.11.26 $B$N(B SSH Secure Shell Unix server setsid() function call vulnerability (VU#740619) $B$KDI5-$7$?!#(BF-Secure SSH $B%5!<%P(B UNIX $BHG$N>pJs$rDI2C!#(B
$B!!8E$$>pJs$,B?$/$F%"%l$G$9$,!D!D(B
bind 8.3.4 $B$K(B upgrade $B$5$l$k!#(B Vulnerability Note VU#457875: Various DNS service implementations generate multiple simultaneous queries for the same resource record $B$X$N(B URL $B$b=q$+$l$F$$$k$N$GBP1~$5$l$?$N$+$b$7$l$J$$$,!"(B Apple Computer Inc. Information for VU#457875 $B$O(B 2002.11.19 $BHG$N$^$^$J$N$G!"$$$^$$$A$h$/$o$+$i$J$$!#(B ($B5-=R=$@5(B: $B@P@n$5$s46
$B$I$&$d$i(B Mac OS X 10.1.x $B0JA0$X$N(B fix $B$OMQ0U$5$l$J$$$h$&$@!#(B $B$9$5$^$8$$%Y%s%@!<$@$M!#(B
2.5:
2.1.x:
$B!!(Bw3m 0.3.2 $B0JA0(B ($B5-=R=$@5(B: $B:4F#$5$s46
$B!!(Bw3m 0.3.2.1 $B$G=$@5$5$l$F$$$k!#(Bw3m-m17n $B$b(B 0.3.2.1 base $B$K$J$C$F$$$k!#(B FreeBSD $B$N(B ports/www/w3m $B$O$^$@(B 0.3.2 $B$N$^$^$@!#(B
Vine Linux 2.5: w3m$B$K%;%-%e%j%F%#%[!<%k(B
$B!!(B2002.11.27 $B$N(B Mulitple Buffer Overflow conditions in RealPlayer/RealOne (#NISR22112002) $B$KDI5-$7$?!#$C$F$J$+$C$?$h$&$G$9!#(B
$B!!(BGREATEST HIT $B$G$9$+!D!D!#(B $B$7$g$;$s!"7Y;!41$K$h$k8D?ME*$J!V$N$>$-!W$K$7$+;H$o$l$J$$$o$1$M!#$$$d$O$d!#(B
$B!!(Bweb $B%P%0$b(B $B%&%$%k%9$G$O$J$$!)!!!H46@w!I$9$k%0%j!<%F%#%s%0%+!<%I(B $B$HF1MM$N?J2=$r?k$2$kLOMM!#(B ZDNet $BHG(B: $B!H(BWeb$B%P%0!I;H$&$J$i9pCN$r!=!=6H3&;X?K(B (ZDNet)$B!#(B
$B!!!V6/@)%"%C%W%0%l!<%I!W$H8@$($PJ9$3$($,$$$$$,!"MW$O(B Windows $B$K(B root backdoor $B$r$D$1$h$&$H$$$&OC$K$7$+J9$3$($J$$!#(B $B$I$&9M$($F$b%7%c%l$K$J$C$F$J$$!#(B $B$?$@$G$5$(!V
$B!!$3$s$J$3$H$r9M$($kA0$K!"$^$:$O(B .NET Server 2003 $B$G!V(Bsecure by default$B!W$rE0Dl$7$F$[$7$$!#%G%U%)%k%H$G(B port 135, 137$B!A(B139, 445 $B$,3+$-$C$Q$J$7!"$N$I$3$,!V(Bsecure by default$B!W$J$N$@(B? $B:#$d$i$:$K$$$D$d$k$N$@!#(B
$B!!L5@~(B LAN $B$r0B0W$J@_Dj$N$^$^6HL3$GMxMQ$7$F$7$^$C$F$$$k$H$3$m$OB?$$$s$@$m$&$J$"!D!D!#(B
$B;32<$5$s$N(B $B%Q%C%A$rL58z$K$5$l$k62$l$"$j!$(BWindows$B$N?<9o$J%;%-%e%j%F%#!&%[!<%k$r2r@b$9$k(B ($BF|7P(B IT Pro) $B$rFI$s$GX3A3$H$7!"(B $B$"$o$F$F(B $B3XFb8~$1$N%Z!<%8(B $B$r99?7!#(B
$B%$%s%?!<%M%C%H!&%;%-%e%j%F%#!&%;%_%J!<(B$B!"(B2002.11.28 ($BL@F|$8$c$s(B)$B!"@gBf;T;TL13hF0%5%]!<%H%;%s%?!
ip filter 3.4.30 $B=P$F$$$k$=$&$G$9!#(B(info from [installer 7509])
$B;~7W9g$o$;$h$&$h(B > ISVW.nttls.co.jp$B!#(B 10 $BJ,$/$i$$%:%l$F$^$;$s(B?
$B!!J#?t$N(B DNS $B%5!<%P
$B!!$3$NOC$N85$K$J$C$?$H;W$o$l$k(B
Vulnerability in the sending requests control of
BIND versions 4 and 8 allows DNS spoofing (CAIS/RNP)
$B$K$h$k$H!"(B
bind 4.9.11 $B0JA0(B (4.9.x),
bind 8.2.7 $B0JA0(B (8.2.x), bind 8.3.4 $B0JA0(B (8.3.x) $B$K$O$3$N
$B%9%/%j!<%s(B $B%;!<%P!<$,F0:nCf$K(B LockWorkstation() $B$r8F$S=P$9$H%3%s%T%e!<%?$O%O%s%0$9$k(B$B!#:F5/F0$,I,MW$K$J$k$=$&$G!#(B
Windows 2000 Professional $B%Y!<%9$N%/%i%$%"%s%H(B $B%3%s%T%e!<%?$+$i(B Windows NT 4.0 $B%Y!<%9$N%5!<%P!<$K3d$jEv$F$i$l$F$$$k%I%i%$%V$KJ8=q$rJ]B8$7$?>l9g$N%(%i!<(B $B%a%C%;!<%8(B$B!#!V(B$B$3$NLdBj$O!"(BInoculanIT Advanced Antivirus Software V4.53 build 631 $B$r;HMQ$7$F$$$k>l9g$KH/@8$9$k2DG=@-$,$"(B
$B!W$k$N$@$=$&$G!#(B
[OFF2000] $B@=IJ%3!<%I(B GUID $B$NHV9fIU$1$N;EAH$_(B$B!"(B [OFFXP] $B@=IJ%3!<%I(B GUID $B$NHV9fIU$1$N;EAH$_(B$B!#(B
Windows 2000 $B$,F0:n$9$k%3%s%T%e!<%?$G$N(B 802.1x $BG'>Z$N;HMQ(B $B!#(B Windows 2000 $B$G$b%$%1$k$h$&$K$J$k$h$&$G$9!#(B
[IE]$B%U%l!<%`Fb$K(B Excel $B$rI=<($7$?%Z!<%8$GJ#?tIt?t$N0u:~$r$9$k$HIt?t$NFs>hJ,=PNO$5$l$k(B$B!#(B2 $BG\$8$c$J$/$F(B 2 $B>h$@$=$&$G!#$*$^$1$K;EMM$@$=$&$G!#(B
$B!!(Bofficial: RealPlayer Buffer Overrun Vulnerability$B!#(B
RealOne / RealPlayer $B$K!"30It$+$i967b2DG=$J(B buffer overflow $B7j$,(B 3 $B$D$"$k$H$$$&OC!#(BRealOne / RealPlayer $B
$B!!(BRealOne Player for Windows $BMQ(B patch $B$,G[I[$5$l$F$$$k!#(B
$B!!$C$F$J$+$C$?$h$&$G$9(B: $B%j%"%k!"%a%G%#%"%W%l!<%d!<$N=$@5%Q%C%A$r2002.11.28 $BDI5-(B:
$BHs1DMxCDBN$N(BOWASP$B!"%*!<%W%s%=!<%9$N%U%!%$%"%&%)!<%k(B/IDS$B$r8x3+M=Dj(B (INTERNET Watch)$B!#$H$j$"$($:(B 2 $B$+7nBT$C$F$_$l$P$$$$$N$+$J!#(B
Microsoft Data Access Components $B$N%P%C%U%!(B $B%*!<%P!<%i%s$K$h$j!"%3!<%I$,
$B%N!<%H%Q%=%3%s$NG.$G%Z%K%9$K2P=}!)(B (WIRED NEWS)$B!#(B $B$$$^$I$-$NG.$$(B CPU $B$G$O!"3N$+$K(B laptop operation $B$O4m81$+$b(B ($B>P(B)$B!#(B
$B%$%s%7%G%s%HJs9p7o?t$N?d0\(B (JPCERT/CC)$B!#$*$*!"$A$g$C$H2sI|4pD4!#(B
$BO":\!'4IM}
$B%9%/%&%'%"$H%(%K%C%/%9$,9gJ;(B (slashdot.jp)$B!#(B $B3N$+$K!"(B$B%9%/%&%'%"(B$B$K$O$D$J$,$k$1$I(B$B%(%K%C%/%9(B$B$K$O$D$J$,$i$J$$$G$9$M(B > $BC]@%$5$s!#(B
$B%;%-%e%j%F%#%^%,%8%s(B vol.007 $B$*$b$7$m$$$G$9$M$(!#:,DE$5$s$N5-;v$N$*$+$2$GC/$G$b(B AirSnort $B$G$"$=$Y$k$7!"(BOffice $B@a$OGzH/$7$F$k$7!#(B
$B!!(BSolaris 2.5.1$B!A(B9 $B$N(B xfs $B%5!<%P(B (fs.auto) $B$K
$B!!4XO"(B: CERT Advisory CA-2002-34 Buffer Overflow in Solaris X Window Font Service (CERT/CC)$B!#(B
$B!!(B Sun(sm) Alert Notification 48879: X Font Server May Allow Denial of Service (Sun)$B!#(B
DoS?
$B!!(B Sun(sm) Alert Notification 48879: X Font Server May Allow Denial of Service
$B$,2~D{$5$l$F$$$k!#(Bpatch $B$,EP>l$7$?$h$&$@!#(B
2002.11.27 $BDI5-(B:
2002.12.23 $BDI5-(B:
$B!!(Bssh.com
$B$N(B SSH Secure Shell for Servers / Workstations 2.0.13 $B!A(B 3.2.1
$B$N(B UNIX $BHG(B ($B6qBNE*$K$O(B AIX, Linux, HP-UX, Solaris, BSD) $B$K
$B!!BP1~$9$k$K$O!"(BSSH Secure Shell 3.1.5 $B$"$k$$$O(B 3.2.2 $B$K(B upgrade $B$9$k!#(B
$B$3$l$i$K$*$$$F$O>o$K(B setsid() $B$9$k$h$&$KJQ99$5$l$F$$$k!#(B
$B!!;2>H(B: VU#740619
$B!!(BF-Secure SSH$B%5!<%P(B UNIX$BHG$K$*$1$k%m%0%$%sL>56Au$N@H2002.11.28 $BDI5-(B:
[samba-jp:13875] [ANN] $B%*%j%8%J%kHG(B Samba 2.2.7 $B$K$*$1$k@H
Microsoft Windows 2000 SP3 $B$NBP1~>u67(B ($B%7%^%s%F%C%/(B)$B!#(B
Athlon $B$,G3$($k1GA|(B $B$@$=$&$G$9(B (^^;)$B!#(B manapi $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
2002.11.22 $B$N(B
OSX-users $B%a!<%j%s%0%j%9%H(B$B$,$G$-$F$$$^$9!#$b$A$m$s!"Nc$N$/$@$i$J$$!V5DO@!W$+$iGI@8$7$?$b$N$G$9$M!#$H$$$&$+!"$=$l$,$J$/$F$b(B macosx-jp ML $B$O(B S/N $BHf$,$"$^$j$KDc$/$J$C$F$7$^$C$?46$"$j!#(B
$B$H$$$&;d$NJ8>O$KBP$7$F!"$7$m$d$^$5$s$+$i(B:
$B$3$NJ8LL$G$9$H!"$J$s$H$J$/!V$/$@$i$J$$5DO@!W$r9T$&0Y$K(B OSX-users $B$,=P$F$-$?$h$&$K46$8$i$l$F$7$^$$$^$9!#(B
$B8=.Eg$5$s$b$=$3$i$X$s$O$4M}2r$5$l$F$$$k$H$$$&$N$O>5CN$7$F$*$j$^$9$,!"$?$@!"$J$s$F$$$$$^$9$+!"!VGI@8!W$K5$$K$+$+$C$?$N$G$4O"Mm$7$?
$B$I$&$$$&J8LL$@$H$$$$$+$O;d$b$$$$$+$M$^$9$,!"!VNc$N$/$@$i$J$$!V5DO@!W$N$;$$$G!!(Bmacosx-jp ML$B$+$iGI@8$7$?$b$N$G$9$M!#!W$H$$$&46$8$@$H!"!V5DO@!W$NHt$S2P$G$O$J$/(Bmacosx-jp$B$+$i$NGI@8$H$$$&$N$,J,$+$C$F$$$?$@$1$k$+$J$!$C$H;W$$$^$9!#(B
$B$^$"!"$=$&$$$&$3$H$G!#(B
smrsh $B$J4D6-$G(B .forward $B$K(B "|IFS=' ' && exec /usr/bin/procmail -f- || exit 75 #hoge" $B$J$s$F=q$/$H!"(Bsmrsh $B$,!V(Bsmrsh: IFS=' not available for sendmail programs$B!W$H$+8@$C$FE\$C$?$j$9$k$N$G$9$,!"$H$-$I$-$=$&$$$&?M$$$^$9$M$(!#(B
$B$A$g$C$H(B google $B$5$s$KJ9$$$F$_$?$H$3$m!"$?$H$($P(B Re: smrsh, procmail, IFS, and lime jello $B$J$s$F$N$,=P$F$-$^$7$?!#(Bsmrsh(8) $B$b;2>H!#(B
$B!!(B@Random/1st $B$,(B 2003.02.08 $B$K(B ($B$h$&$d$/(B (^^;;;)) $B3+:E$5$l$^$9!#(B $B>\:Y$K$D$$$F$O$*$$$*$$8x3+$5$l$F$$$/$H;W$$$^$9$N$G!"$b$&$7$P$i$/$*BT$A$/$@$5$$$^$7!#(B @Random/ZERO $B$K;22C$5$l$?J}$K$O!"6a!9$K@h9TM=Ls$N0FFb%a!<%k$,FO$/$H;W$$$^$9!#(B
$B%P%$%*%a%H%j%C%/%9MxMQ$N?7%Q%9%]!<%HF3F~$r8!F$!!30L3>J(B ($BKhF|(B)$B!#(B
$B!VBP%F%m!W$K$+$3$D$1$F!V(B1984 $BG/!W$r
$B=;4p%M%C%H3HBg$NEE;R@/I\(B3$BK!0F!";21!$G2D7h$X!!:#9q2q@.N)$b(B$B!"(B
$B?35D$o$:$+(B10$B;~4V!!=;4p%M%C%HMxMQHO0O3HBg$KHsFqAj ($BKhF|(B)$B!#(B
$B:G=i$+$i!"$3$&$$$&$D$b$j$@$C$?$C$F%3%H$G$9$J!#(B
$B=;4p%M%C%H$N8xL30wIT@5MxMQ$KH3B'!!2#IM;T$,A49q=i(B ($BKhF|(B)$B!#(B
$B$o$+$C$F$$$k<+<#BN$O$o$+$C$F$$$k$o$1$G$9$,!#(B
$B$D!<$+$3$&$$$&$b$N$3$=9q$G@0Hw$;$$$h!#(B
From: $B$d(B envelope from $B08$K(B virus mail $B7Y9p$rJV$9$N$O$d$a$F$[$7$$$J$"(B
> techmatrix.co.jp$B!#$U$D$&:>>N$5$l$F$k$s$@$C$F$P!#(B
$BCf3X@8m`;`;v8N$NJF73$KL5:a$NI>7h(B ($BD+A/F|Js(B)$B!"(B
$B=w;RCf3X@8;`K4;v7o$NJF73!"L5:aI>7h(B ($BCf1{F|Js(B)$B!#(B
$B!VCs4ZJF73!&73;v:[H==j!W$NI>7h!#$5$9$,JF73!#(B
$BA4A34X78$J$$$,!"(B
$B#1#0#0!sFH<+3+H/%m%1%C%H!"#2#7F|;n83H/
$BFH<+%R%e!<%j%9%F%#%C%/8!CN$rF3F~$7$?%&%#%k%9BP:v@=IJ!V(BNOD32$B!W$,H/Gd(B (INTERNET Watch)$B!#$G$b!"(BNOD32 $B$O(B 2003.02 $BM=Dj!"(BTiny Personal Firewall $B$O(B
2003.03 $BM=Dj$@$=$&$J$N$G!"$:$$$V$s@h$NOC!#(B
$B%O%C%+!<$ND)@o(B (shoeisha.com)$B!#$*$b$7$m$=$&!#(B
$B!H(B3GHz$B!I$H!H(BPC$B%1!<%9!I$NHyL/$J4X78(B (ZDNet)$B!#(B
$BK((B^H$BG3$(7O$N7|G0$K$D$$$F$O!"(B$B$3$s$J$U$&(B$B$K$J$C$F$$$k$=$&$G$9!#(BAMD Athlon $B$O(B$B$[$s$H$&$KG3$($k;vNc(B$B$,$"$k$h$&$J$N$G5$$r$D$1$^$;$&!#(B
$B4XO"(B: AVAR2002$B!"(B
CERTCC-KR $BF|K\8lHG(B$B!#(B
http://www.securitymap.jp/
$B$H$$$&%5%$%H$,$"$k$s$G$9$M!#$3$l$^$?%;%3%`>e?.1[$5$s$G$9!#(B
OSX-users $B%a!<%j%s%0%j%9%H(B$B$,$G$-$F$$$^$9!#$b$A$m$s!"Nc$N$/$@$i$J$$!V5DO@!W$+$iGI@8$7$?$b$N$G$9$M!#$H$$$&$+!"$=$l$,$J$/$F$b(B macosx-jp ML $B$O(B S/N $BHf$,$"$^$j$KDc$/$J$C$F$7$^$C$?46$"$j!#(B
$B!!(BSun Java JDK/SDK/JRE 1.1.8, 1.2.2, 1.3.0, 1.3.1, 1.4.0 $B$K(B Zlib Advisory 2002-03-11: zlib Compression Library Corrupts malloc Data Structures via Double Free $B7j$,$"$C$?$H$$$&OC!#(B1.4.1 $B7ONs$K$O$3$N7j$O$J$$$=$&$@!#(B $B2?$r$$$^$4$m!D!D$H$$$&$N$,@5D>$J46A[!#$3$l$@$+$i!V(BSun $B$OJ5!W$H$+8@$o$l$k$o$1$G!D!D!#(B
$B!!(Bfix $BHG$,=P$F$$$k$N$G!"$3$l$rE,MQ$9$k$+!"(B1.4.1 $B7ONs$K0\9T$9$l$P$h$$!#(B $B7j$N$"$k$b$N$H(B fix $B$5$l$?$b$N$N%P!<%8%g%sHV9f$N>\:Y$O(B Bulletin #00220 $B$r;2>H!#4XO"(B:
[memo:5000] FYI: JRE$B$N%;%-%e%j%F%#%[!<%k>pJs(B Fw: Double Free bug in zlib compression library
$B9bLZ$5$s<+?H$N%U%)%m!<(B [memo:5001] $B$K$h$k$H!"(Bfix $B<+BN$O$:!A$$$V$sA0$K$5$l$F$$$?LOMM$G$9!#(B $B$J$<9pCN$7$J$$$N$@(B Sun $B!D!D!#(B
Java $B%"%W%l%C%H5/F0$K;HMQ$5$l$k(B JVM $B$N%Y%s%@$H%P!<%8%g%s$N3NG'(B (java-house.jp)
$B
INTERSTAGE APWORKS$B$*$h$S(BINTERSTAGE Application Server$B$K$*$1$k!"(BJava$B
Netscape Security News: Sun JRE (Java Runtime Environment) Issue (netscape.com)
HPSBUX0211-0226 SSRT2146 Java Zlib compression libraries bug (HP)
$BF|K\8lHG(B: HPSBUX0211-226 SSRT2146 Java Zlib$B05=L%i%$%V%i%j$NIT6q9g(B
$B!!(B2002.11.20 $B$N(B [INFO] $B%3!<%I$N:GE,2=$K$*$1$kCm0UE@(B $B$KDI5-$7$?!#(B $B$=$&$$$&5!G=$O(B gcc $B$K$O$^$@$J$$$h$&$G$9!#(B($B1|B<$5$s46
$B!!7Y;!8"NO$r6/$/$7$?$H$3$m$G!"$=$b$=$bHo32FO$,=P$J$$$N$G$O!D!D!#(B
$BHH?M$rJa$^$($?$H$3$m$G!"$b$H$b$H$N%;%-%e%j%F%#$,
$B!!$$$m$$$m!#(B
Cisco Security Advisory: Cisco PIX Multiple Vulnerabilities
CISCO PIX $B$N(B 2 $B$D$N
CERT Advisory CA-2002-32 Backdoor in Alcatel OmniSwitch AOS
Alcatel $B$N(B AOS 5.1.1 (on OmniSwitch 7700/7800)
$B$,!"3+H/MQ$N(B telnet $B%5!<%P(B (6778/tcp)
$B$r:\$;$?$^$^=P2Y$5$l$F$7$^$C$?LOMM!#(B
remote $B$+$i$3$3$K@\B3$9$k$3$H$G4IM}
The Samba Team are pleased to announce Samba 2.2.7 (samba.org)$B!"(B
$BF|K\8lLu(B (samba.gr.jp)$B!#(B
Samba 2.2.2$B!A(B2.2.6 $B$K@x:_E*$J%;%-%e%j%F%#LdBj$,$"$j!"(B2.2.7 $B$G=$@5$5$l$?!#(B
$B$3$l$O0l;~4|(B samba.gr.jp $BJ}LL$GOCBj$K$J$C$?7o$G!"(B
Samba $BF|K\8lHG$K$O$:$$$V$sA0$+$i(B fix $B$,4^$^$l$F$$$k(B
[samba-jp:13851]$B!#(B
$B>/$J$/$H$b(B Samba $BF|K\8lHG$O(B 2.2 $B7O$J$i(B ok ok $B$@$=$&$@!#(B
[samba-jp:13875] [ANN] $B%*%j%8%J%kHG(B Samba 2.2.7 $B$K$*$1$k@H
$B$$$^$5$i(B Netscape Communicator 4.x $B$NOC$r$5$l$F$b!D!D!#(B
[VulnWatch] iDEFENSE Security
Advisory 11.19.02b: Eudora Script Execution Vulnerability
Eudora 5.1.1, 5.2 $B$OE:IU%U%!%$%k$NJ]B8@h$,M=B,2DG=$J$N$G!"(B
$B$3$l$rMxMQ$5$l$k$H>pJsO31H$N2DG=@-$"$j!"$H$$$&OC!#(B
$B$I$3$+$GJ9$$$?3P$($,$"$k$h$&$J5$$b!#(B
LOM: Multiple vulnerabilities in Macromedia Flash ActiveX
Macromedia Flash ActiveX 6.0 (6,0,47,0) for Microsoft Internet Explorer
$B$K!"(Bzlib double free $BLdBj$H(B
flash $B%*%V%8%'%/%H$N(B SWRemote $B%Q%i%a!<%?$G(B buffer overflow $B$9$kLdBj$,$"$k!"$H$$$&;XE&!#$3$l$K$D$$$F!"(Bzlib double free $B$O(B 2002.03 $B;~E@$G(B fix $B$5$l$F$$$k$,!"(BSWRemote overflow $B$O3N$+$KB8:_$7!"(B$B:G?7%Y!<%?HG(B$B$G$O=$@5$5$l$F$$$k!"(B
$B$H(B$B%U%)%m!<(B$B$5$l$F$$$k!#(B
Proof of concept code
$B$,8x3+$5$l$F$$$k!#
[VulnWatch] iPlanet WebServer, remote root compromise
iPlanet WebServer 4.x $B$N(B SP11 $B0JA0$K!"(Bremote $B$+$i(B root $B$r
RhinoSoft Serv-U FTP Anonymous Remote DoS Vulnerability
FTP Serv-U 4.0.0.4 $B0JA0$K(B DoS $B967b$r
$B!!(Bbind $B$O$d$C$Q$j
MS$B$N(BFTP$B%5!<%P!<$+$i!"8\5R%G!<%?%Y!<%9$J$IBgNL$NFbIt;qNA$,N.=P(B (WIRED NEWS)$B!#(B $B$I$s$JFbMF$J$s$@$m$&!#(B
$B!!4XO"(B:
$B$b$H$b$H$N;XE&(B: How to execute programs with parameters in IE - Sandblad advisory #10 (Andreas Sandblad $B;a(B)$B!#(B
$B!!(BWIRED $B5-;v$K%j%s%/$5$l$F$$$k(B Serious Internet Explorer Defect (jmu.edu) $B$K$h$l$P!"$5$-$4$mEP>l$7$?(B Internet Explorer $BMQ$NN_@QE*$J=$@5%W%m%0%i%`(B (Q328970) (MS02-066) $B$rE,MQ$9$k$H!"<($5$l$?(B exploit $B$OF0:n$7$J$/$J$k!"$H$$$&!#$,!"(B
However, it is not entirely clear yet whether the patch specifically and entirely addresses the Sandblad discovery.
$B!!$=$b$=$b(B MS02-066 $B$G2?$,=$@5$5$l$F$$$k$N$+(B ($B$5$l$F$$$J$$$N$+(B) $B$b$$$^$$$A$h$/$o$+$i$J$$!#(B .png $BLdBj$O(B eEye $B$,H/8+$7$?$b$N$N$h$&$J$N$G!"6a!935MW$,(B eEye $B$+$i<($5$l$k$N$@$m$&!#$^$?!V%U%l!<%`$NITE,@Z$J%/%m%9(B $B%I%a%$%s$N%;%-%e%j%F%#8!>Z!W(B (CAN-2002-1217) $B$O(B GreyMagic Security Advisory GM#011-IE: Internet Explorer : The D-Day $B$J$N$@$=$&$@!#(B
$B!!$A$J$_$K!"(BUnpatched IE security holes $B$K$O8=:_(B 32 $B8D$NLdBjE@$,Ns5-$5$l$F$$$k!#(B
[FreeBSD-users-jp 72175] FreeBSD 4.7/4.5 update packges$B!#(B FreeBSD 4.7, 4.5 $BMQ$N%P%$%J%j%"%C%W%G!<%H%Q%C%1!<%8$r$D$/$i$l$?J}$,$$$i$C$7$c$$$^$9!#JXMx$+$b!#(B
WinSCP 2.0 beta (#93) $B$,=P$F$$$k$=$&$G$9!#GrH*$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
Alien Autopsy: Reverse Engineering Win32 Trojans on Linux (securityfocus.com)$B!#(B WINE $B$G$"$=$VOC$_$?$$!#(B
$B!X(B.NET Server$B!Y!"(B3$BEYL\$N1d4|(B (CNET)$B!#(B $B8D?ME*$K$O$8$C$/$j0i$F$F$b$i$C$F$+$^$o$J$$$H;W$&$1$I!"6aL$Mh$K$*$$$F%7%9%F%`9=C[!&99?7$r7W2h$7$F$$$k?M$K$H$C$F$O%7%c%l$K$J$i$J$$$@$m$&$J$"!#(B $BCY$l$F$$$k%9%-$K!"!V$d$C$Q$j%G%U%)%k%H$G(B port 135, 137$B!A(B139, 445 $B$O:I$.$^$9!W$H$+!"$=$3$^$G$$$+$:$H$b$;$a$F!V%$%s%9%H!<%k;~$K:I$0$3$H$,$G$-$k%\%?%s$r$D$1$^$7$?!W!V%$%s%9%H!<%k;~$K%U%!%$%"%&%)!<%k5!G=$r4JC1$KM-8z$K$9$k$3$H$,$G$-$k%\%?%s$r$D$1$^$7$?!W$H$+$KJQ$o$k$H$$$$$s$@$1$I!D!D!#(B
$B%^%$%/%m%=%U%H$+$i$NFC5vAJ>Y967b$KHw$($k%*!<%W%s%=!<%9?X1D(B (WIRED NEWS)$B!#(B $Bl$OFC5v(B?
5th JWNTUG Open Talk in MSC $BBg:e(B $B$K;22C$5$l$?$_$J$5$s!"$*$D$+$l$5$^$G$7$?!#$H$$$&$+!"CY$l$F$9$$$^$;$s!#(B ($B$^$?$+$h(B > $B26(B)
$B!!(Bguninski $B;a$K$h$k(B 2 $B$D$N;XE&!#(B
$B%f!<%6$,!"(Bmod_php $B$D$-(B Apache 1.3 $B$+$i30It%W%m%0%i%`$r
$B2sHr$9$k$K$O(B safe_mode $B$r(B on $B$K$9$l$P$h$$!#(B unofficial $B$JBP1~(B patch $B$bE:IU$5$l$F$$$k!#(B
2.4.19 $B$h$jA0$N(B Linux $B%+!<%M%k$r%U%j!<%:$5$;$k$3$H$,$G$-$k!"$H$$$&;XE&!#(B kernel 2.4.19 $B$GD>$C$F$$$k$N$G!"(Bkernel 2.4.19 $B$rF~$l$l$P$h$$!#(B
$B!!9gC+$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B Full-Disclosure ML $B$H$$$&$N$,$G$-$F$$$?$s$G$9$M!#$5$C$=$/(B subscribe $B$7$^$7$?!#(B
$B!!(B$BNI$$%K%e!<%9$H0-$$%K%e!<%9(B $B$NA0H>(B ($B0-$$%K%e!<%9(B) $B$b;2>H!#$A$J$_$K!"(B GCC $B$N>l9g(B $B$O$3$s$J46$8$K$J$k$N$@$=$&$@!#(B
#pragma optimize("-no-dead-code-removal")
memset(Password, 0, sizeof(Password));
#pragma optimize("-dead-code-removal")
$B!!1|B<$5$s$+$i(B ($B$I$&$b$G$9(B):
$B$3$l$O!V$3$s$J$U$&$K$G$-$k$h$&$K$J$C$?$i$$$$$J!W$H$$$&OC$G$O$J$+$C$?$G$7$g$&$+!#(B
$B!!$"$C!"(BHowever, to the best of my knowledge, GCC does not support altering optimization
options on-the-fly though preprocessor statements
$B$C$F=q$$$F$"$k$7!#FI$_$,B-$j$J$$(B ($B$D!<$+$=$l0JA0(B > $B26(B)$B!#(B
$B$3$&$$$&5!G=$O(B gcc $B$K$O$^$@$J$$$h$&$G$9!#(B
$B$9$s$^$;$s(B > all$B!#(B
$B!!(BMacromedia ColdFusion MX 6.0, JRun 3.0 / 3.1 / 4.0 $B$N(B IIS ISAPI
$B%O%s%I%i$K
$B!!(Bfix (ColdFusion MX, JRun) $B$,$"$k$N$GE,MQ$9$l$P$h$$!#(B
$BF|K\8lHG$O!"(BColdFusion MX $B%"%C%W%G!<%?(B $B%j%j!<%9(B 1 ($B%j%j!<%9%N!<%H(B)
$B$H(B JRun
$B$+$iF~
$B!!%$%s%9%H!<%k$O$*$m$+!"MxMQ$K$*$$$F$9$i(B administrator / Power Users $B8"8BI,MW(B$B$H$$$&$"$?$j$,!"$$$+$K$b!V%;%-%e%j%F%#$,$o$+$C$F$J$$!W$C$F46$8$G!"$5$9$,(B SONY$B!#F,0-$9$.!#(B
$B!!?<9oEYI>2A$,(B 4 $BCJ3,(B ($B6[5^(B, $B=EMW(B, $B7Y9p(B, $BCm0U(B / Critical, Important, Moderate, Low) $B$KJQ99$5$l$?!#(B
$B%^%$%/%m%=%U%H$G$O!"1F6A$r2A$5$l$F$$$k@Ho$KE,MQ$9$kI,MW$,$"$k$H9M$($F$$$^$9!#!V6[5^!W$HI>2A$5$l$F$$$k=$@5%W%m%0%i%`$O!"D>$A$KE,MQ$9$kI,MW$,$"$j$^$9!#!V7Y9p!W$^$?$O!VCm0U!W$HI>2A$5$l$F$$$k@H pJs$rFI$_!"$=$N@H 2A$5$l$F$$$k@H $B!!$h$jE,@Z$JI>2AJ}K!$K$J$C$?$H;W$&$1$l$I!"$b$A$m$s!"8D!9$NAH?%$K$*$$$F(B Microsoft $B$K$h$kI>2A$,$=$N$^$^$"$F$O$^$k!"$o$1$G$OI,$:$7$b$J$$$o$1$G!"(BMicrosoft $B<+?H$b(B
$B$3$N?<9oEYI>2A%7%9%F%`$O!"$=$l$>$l$NLdBj$r9-$/5R4QE*$KI>2A$G$-$k$h$&$K$9$k$3$H$rL\E*$H$7$F$$$^$9$,!"%^%$%/%m%=%U%H$O!"$*5RMM$K$=$l$>$l$N4D6-$r3NG'$7!"%7%9%F%`$rJ]8n$9$k$?$a$KI,MW$J=$@5%W%m%0%i%`$r7hDj$9$k$3$H$r6/$/?d>)$7$^$9!#(B$B$H=q$$$F$$$k!#(B Microsoft $B$K$h$kI>2A$O;29M$K;_$a!"<+J,<+?H$G9T$&$3$H$r?4$,$1$?$$!#(B $B2a>.I>2A$O6XJ*$@$1$I!#(B $B$^$!!"!V6[5^!W!V=EMW!W$O$?$$$F$$!V6[5^!W!V=EMW!W$G$7$g$&$1$I$M!#(B
$B6H3&$N7P83>e!"$*5RMM$N%7%9%F%`$K1F6A$r5Z$\$9967b$O!"967bl9g$O$a$C$?$K$"$j$^$;$s!#(BCode Red $B$*$h$S(B Nimda $B%o!<%`(B $B%&%$%k%9$N$h$&$K!"967b$O$`$7$m!"=$@5%W%m%0%i%`$,$9$G$KDs6!$5$l$F$$$F$b!"$=$l$,E,MQ$5$l$F$$$J$$@H l9g$,B?$$$N$G$9!#(B $B!!(BNimda $B$N>l9g!"!V4{CN$@$1$I(B Microsoft $B$,(B patch $B$r=P$7$F$$$J$+$C$?@H
$B$5$F!"(B 5th JWNTUG Open Talk in MSC $BBg:e(B $B$K9T$+$M$P!D!D!#(B
$B#R!&%&%#%j%"%`%9$N?76J!"%M%C%H2;3Z8r49%5!<%S%9$K!H$*$H$j!I=P8=(B ($B%m%$%?!<(B)$B!#(B $B$I$N$/$i$$M-8z$J$N$+$J$"!#(B
ProFTPD $BMQ$N(B OTP $BG'>ZMQ%b%8%e!<%k(B (ayamura.org, info from [ftpd 841])$B!#(B
$B%*%i%$%j!<%8%c%Q%s(B $B6a4)0FFb(B$B!#$3!"$3$l$O!D!D!#(B12 $B7n$O$?$@$G$5$(6b$,B-$j$J$$$N$K!D!D!#(B $B$H$$$&$+!"$d$?$iJ,:}$K$J$k$N!"$J$s$H$+$J$i$J$$$s$G$9$+$M$(!#(B
$BJF73%M%C%H%o!<%/?/F~MF5?$N%$%.%j%9?M$,HH$7$?CWL?E*$J%_%9(B (WIRED NEWS)$B!#(B $B@$$NCf87$7$$!#(B
$B>pJs=hM}3X2q(B $BBh(B65$B2sA49qBg2q(B $BFCJL%H%i%C%/(B (9): $B>CHq
$B%A%g%`%9%-!<$K$^$D$o$kN.8@Ht8l(B $B$,2CI.!&2~D{$5$l$F$$$^$9!#$=$l$K$7$F$b!"CSED?.IW$H$$$$(B 3K $B$H$$$$!D!D!#(B
The Shadow Penguin Security Lounge $B$G!VG/L@$1JU$j$K%*%U2q$_$?$$$J%b%N$r3+:EM=Dj!W$H5-:\$5$l$F$$$^$9!#(B
$BF|K\@/I\$b%*!<%W%s%=!<%9$J(BOS$B$r@Q6KE*:NMQ$X(B (slashdot.jp)$B!#(B $B$"$$$+$o$i$:$N$3$N%F$NH/8@(B$B$b$$$$$+$2$s$d$a$F$[$7$$$,!"(B Linux $B$K$9$k$@$1$G%;%-%e%j%F%#%l%Y%k$,>e$,$k$H4*0c$$$9$k?M$,A}$($?$j$9$k$N$b$$$d$@$J$"!#(B
$B!VEE;R@/I\!W$N0BA4@-$r9b$a$k$?$a!"@/I\Fb%M%C%H%o!<%/$N%3%s%T%e!<%?!<$G:NMQ$9$k4pK\%=%U%H!J#O#S!K$N8+D>$7$K>h$j=P$9(B
$B$J$s$F>l9g$O!"!V(BWindows $B$K$O(B U.S.A. $B6`@=$N%P%C%/%I%"$,$"$k$+$b$M!W%l%Y%k$NOC$X$NBP1~!"$@$H;W$&$s$@$,!D!D0c$&$N$+$J$"!#(B $B$$$d!";:Am8&$H$+$G%,%j%,%j(B source code review $B$d$C$F7j$r$"$V$j$^$/$C$F$/$l$?$j$9$k$H!"$b$A$m$s$&$l$7$$$s$@$1$I!"$=$&$$$&OC$K$O$J$i$J$$$h$M$'$?$V$s!#(B
$B%*!<%W%s%=!<%9$H@/I\(B (mri.co.jp) $B$J$s$F%Z!<%8$,$"$k$s$G$9$M!#(B
$B%3%s%T%e!<%?%&%$%k%9BP:v(B $B$,(B http://kosuge.kdn.jp/anti/index.html $B$K0z1[$7$F$$$k$h$&$G$9!#(B $B0f>e$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B$$$o$f$k!VG'>Z(BVLAN$B!W$N$h$&$J%7%9%F%`$K$D$$$F$N;dE*$J%a%b(B (hit-u.ac.jp)$B!#(B $B8x6&MxMQ$NL5@~(BLAN/$B%$!<%5%M%C%H!&%8%c%C%/$N%;%-%e%j%F%#BP:v(B (tohoku.ac.jp) $B$b2~D{$5$l$F$$$k$=$&$G$9!#8eF#$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
MindTerm 2.3.1 $B$,=P$F$$$^$9!#(B personal use $B$OL5NA$G$9!#8eF#$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
PuTTY 0.53b $B$,=P$F$$$^$9!#(B PuTTY $B$G(B ISO 2022 $B$K$h$kF|K\8lF~NO!&I=<($r2DG=$K$9$k%Q%C%A(B $B$b(B 0.53b $B%Y!<%9$K$J$C$F$$$^$9!#8eF#$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B%=!<%9%M%/%9%H!"%&%$%k%9BP:v%=%U%HL5=~G[I[$G="?&3hF0$r;Y1g(B (CNET)$B!#(B $B!V(BMaAfee.com $B$N(B 180 $BF|4|4V8BDjHG!W$@$=$&$G!#$J$s$+%;%3$/$J$$$+(B?
$B!!;EMM>e$NLdBj$K$h$j(B DoS $B967b$K
$B!!(Bx86 Linux $B$KBP$9$k(B local DoS $B%3!<%I!#(B
Red Hat Linux: [RHSA-2002:262-07] New kernel fixes local denial of service issue
Red Hat Linux 7.1 $B!A(B 8.0 $B$N99?7%Q%C%1!<%8!#(B DoS $B$O(B kernel 2.4.x $B$G$N$_M-8z!"$J$N$+$J!#(B
$B!!(B2002.11.15 $B$N(B $B%&%$%k%9$G$O$J$$!)!!!H46@w!I$9$k%0%j!<%F%#%s%0%+!<%I(B $B$KDI5-$7$?!#3F%Y%s%@$NBP1~>u67$rDI5-!#$?$$$F$$$OBP1~$7$F$$$k$_$?$$!#(B
SnortSnarf 021111.1 $B=P$F$$$^$9!#(B021017.1 $B$G(B Snort 1.9.0 $B$KBP1~$7$F$$$^$9!#Bg_7$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B%"%/%;%9@)8f5!G=$K4X$9$k5;=Q$N8&5f3+H/>pJs$NJg=8$K$D$$$F(B ($B7P:Q;:6H>J(B, info from [IDS-TALK 475])$B!#(B
$BBg5,LO$J%5!<%S%9ITG=967b$J$I$r:F8=2DG=$J!VIT@5%Q%1%C%HLOJoAuCV!W$r3+H/(B (CRL)$B!#(B
$B%.%,%S%C%H5i%M%C%H%o!<%/$rKd$a?T$/$9$[$I$NBgNL$NIT@5%Q%1%C%H$rH/@8$5$;!"(BDDoS$B!J(BDistributed Denial of Service: $BJ,;67?%5!<%S%9ITG=!K967b$J$I$NBg5,LO$J967b$r:F8=$9$k$3$H$,2DG=$G$9!#(B
$B!D!D(BWebAvalanche/WebReflector $B$N$3$H$i$7$$$G$9!#$U$/$b$H$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B%M%C%H%*!<%/%7%g%s5,@)K!0F$r=05D1!$G2D7h!!6H
$B%Q%9%]!<%H$N%*%s%i%$%s?=@A
JPNIC News & Views vol.44$B!ZDj4|9f![(B2002.11.15$B!#(B $B%;%-%e%j%F%#;v6H%9%?!<%H!*(B $B$@$=$&$G$9!#(B
$B!X%A%g%`%9%-!<(B 9.11 Power and Terror ($B8"NO$H%F%m(B)$B!Y$r8+$F(B ($B0KF#@i?R(B)$B!#(B $BFbMF$O$H$b$+$/!"L\$,DK$$!#$J$s$H$+$J$i$J$$$s$@$m$&$+!#(B
$B%a%k%^%,$G9q:]%K%e!<%9$r2r@b!!9q:]>p@*2r@b
14$BF|$K=;4p%M%C%H3HBgK!0F$N ($BKhF|(B)$B!#(B
$B;25D1!>pJs(BBOX
$B$G!V2q5D$N7P2a!W"*!VAmL30Q0w2q!W$rA*Br$9$k$H!"(B
$B!VJ?@.#1#4G/#1#17n#1#4F|!W$K(B
$B9T@/pJsDL?.$N5;=Q$NMxMQ$K4X$9$kK!N'0F!JBhI48^==;M2s9q2q3UK!Bh0l!;Fs9f!K(B
$B9T@/pJsDL?.$N5;=Q$NMxMQ$K4X$9$kK!N'$N;\9T$K0l!;;09f!K(B
$BEE;R=pL>$K78$kCOJ}8x6&CDBN$NG'>Z6HL3$K4X$9$kK!N'0F!JBhI48^==;M2s9q2q3UK!Bh0l!;;M9f!K(B
$B!!1&;00F$K$D$$$FJR;3AmL3Bg?C$+$i$B$H$"$j$^$9$M!#(B
$B%A%g%`%9%-!<$K$^$D$o$kN.8@Ht8l(B: $BCSED?.IW$N%&%=(B ($B0[J,;R(B($B2>(B) -dissident- $B%A%g%`%9%-!HotWired Japan $B$K$O!VJT=8
$B!!(Btinyhttpd 0.1.0
$B$K(B ../ $B%P%0$,$"$k$H$$$&OC!#%U%!%$%kFI$_
KDE Security Advisory: resLISa / LISa Vulnerabilities (kde.org)
KDE 2.1 $B!A(B 3.0.4 / 3.1rc3 $B$K
CVE: CAN-2002-1306
KDE Security Advisory: rlogin.protocol and telnet.protocol URL KIO Vulnerability (kde.org)
KDE 2.1 $B!A(B 3.0.4 / 3.1rc3 $B$N(B KIO $B%5%V%7%9%F%`$K$K
CVE: CAN-2002-1282,
CAN-2002-1281
$B!!$I$A$i$b(B KDE 3.0.5 $B$G=$@5$5$l$F$$$k!#$^$?!"(B ftp://ftp.kde.org/pub/kde/security_patches/ $B$K(B 3.0.4 $BMQ(B patch $B$,MQ0U$5$l$F$$$k!#(B
$B!!(B$B9bLZ$5$s$A(B $B$K(B 2002.10.17 $B$K8x3+$5$l$?$b$N!#KAF,$K>pJs=hM}3X2q%M%?$"$j!#(B $B$3$l$b!">pJs=hM}3X2q$+$i$O2?$N%"%J%&%s%9$b$5$l$F$$$J$$$h$&$J5$$,!#(B
$B!!F?L>4uK>$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B!!(BHTML $BHG(B:
$B!!%F%-%9%HHG(B:
tcpdump$B$H(Blibcap$B$K$7$+$1$i$l$?%H%m%$$NLZGO$N7o(B
$B!V(BTurbolinux $B$OLdBj$J$$!W$H$$$&@
[SECURITY] [DSA 192-1] New html2ps packages fix arbitrary code execution
[SECURITY] [DSA 191-2] New squirrelmail packages fix problem in options page
[SECURITY] [DSA 193-1] New klisa packages fix buffer overflow
[SECURITY] [DSA 194-1] New masqmail packages fix buffer overflows
[SECURITY] [DSA 195-1] New Apache-Perl packages fix several vulnerabilities
[SECURITY] [DSA-196-1] New BIND packages fix several vulnerabilities
$B!!A4$F$N%&%#%k%9(B / $B%o!<%`(B / $B%H%m%$$K;HMQ5vBz7@Ls=q$r(B! ($B0c(B)
$B!!(BTea Room for Conference No.1123 $B$b;2>H!#(B $B$I$3$+$GJ9$$$?$h$&$JOC$@$J$"$H$O;W$C$F$$$?$N$@$1$I!"(Boffice $B$5$s$@$C$?$N$M!D!D!#(B
$B!!3F%Y%s%@$NBP1~>u67!#(BIkegami $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
WORM_FRIENDGRT.B ($B%H%l%s%I%^%$%/%m(B)
Friend Greeting application (III) (nai.com)
W32.Friendgreet.worm (Symantec)
Friendgreetings (F-Secure)
sophos $B$O!V%&%#%k%9!W$H$7$F$OBP1~$7$J$$LOMM!#(B
$B!!(B$B!HNi57@5$7$$32Cn!I$,$O$d$j$=$&$@(B (ZDNet)$B!#(B
$B!!(B$BL>8E20$O$($'!A$h!A(B$B!"O31H$9$k$,$M!A!#4XO"(B:
[memo:4971] Re: $B:G6a$N8D?M>pJsN.=P$K$D$$$F(B
$BJs9p$9$k$H$-$O(B hushmail (Java $B$d$i(B ActiveX $BF0:n$d$i$,I,MW$G$9(B) $B$H$+$r;H$&$N$,$$$$$s$G$9$+$M$(!#$J$s$@$+$J$"!#(B $B!D!D$C$F!"(Bhushmail $B%"%+%&%s%H$D$/$m$&$H;W$C$?$i(B IE 6 SP1 $B$,;`$s$8$c$&$8$c$s!#$J$s$J$s$@!D!D!#(B $B!D!D$&!<$s!"(Bhushmail $B$C$FF|K\8l;H$($J$$(B? $BE:IU%U%!%$%k$G%4%^2=$9$7$+$J$$$+$J!#(B
$B!!(B3 $B7n$KN.=P$r3NG'$7$?$,2?$NBP1~$b$7$J$+$C$?!"$N$@$=$&$G!#(B $BAGE($G$9$M!#4XO"(B:
$B#U#F#J$D$P$5>Z7t$N8\5R%j%9%HN.=P!"5lElOB$N#1K|?MD6J,(B (asahi.com)
insider $B$K$h$k967b!"$J$N$+$J!#(B
$BF1A0$N#0#0G/#37n$K5lElOB$N%3%s%T%e!<%?! C5n$5$l$F$*$j!"$@$l$,0z$-=P$7$?$+3NG'$G$-$J$$$H$$$&!#(B
$B>C$($F$7$^$C$?$N$+!"$=$l$H$b0U?^$7$F>C$5$l$?$N$+!#(B log $B$C$F!"$3$s$J$KAa$/>C$7$A$c$&$b$N$J$s$G$9$+(B?
$B!!Nc$K$h$C$F$N(B virus mail $B$P$i$^$-;v7o!#(B $B%"%J%&%s%9$b$N$d%a!<%k%^%,%8%sE*$J$b$N$O!"$U$D$&$O(B moderate $B$J1?MQ$r$9$k$H;W$&$s$@$1$I!"!V$7$F$^$;$s$G$7$?!W$C$F$3$H$J$s$G$9$+$M$(!#(B $BJ!8w$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B=;L1I<%3!<%I@j$$(B($B%Y!<%?HG(B)$B!#$J$k$[$I!#?e7n$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B%\%1M=KI$K$O%o%$%s!"%S!<%k$O5U8z2L$+(B ($BF|7P(B BizTech)$B!#$&!<$`!D!D!#(B
Office 2000 $B%"%C%W%G!<%H(B: Service Pack 3 (SP-3) $B$,=P$?$=$&$G$9!#?9ED$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
Trojan Found in libpcap and tcpdump (slashdot.org)$B!#(B $B$3$N%Q%?!<%s$NN.9T$,7|G0$5$l$F$$$^$7$?$,!"(B2 $BEY$"$k$3$H$O(B 3 $BEY$"$k!"$H$$$&$3$H$J$s$G$7$g$&$+$M$(!#(B
$B$"!"(BCERT Advisory CA-2002-30 Trojan Horse tcpdump and libpcap Distributions $B$b=P$F$k$7!#(B
$B!!(B2002.11.13
$B$N(B
BIND4 $B$*$h$S(B BIND8 $B$G$N%j%b!<%H$GMxMQ2DG=$JJ#?t$N@H
$B!!%@%&%s%m!<%I$9$k:]$K$O(B e-mail address $B$NF~NO$,I,MW!#(B
$B$G!"!V(B$B8D?M>pJs$N
$B!W(B
$B$J$s$F=q$$$F$"$k$o$1$@$,!"$=$N!V(B$B$3$A$i(B$B!W$NFbMF$N$J$52C8:$O4($9$.!#(B
$B!V%W%i%$%P%7!<%^!<%/@)EY!W$C$F!"$I$&$7$F$3$&$J$s$G$9$+$M!#(B
$B5U8z2L$@$H$7$+;W$($J$$$N$@$1$I!D!D!#(B
$B!!%8%c%9%H%7%9%F%`$O!":#$+$i$G$bCY$/$O$J$$$+$i!"(B $B!VF|7P%3%s%T%e!<%?!W(B2002.11.18 $B$NFC=8(B 2 $B!X8\5R>pJs$O!VN>?O$N7u!W!Y(B $B$"$?$j$rFI$s$G!"2?$r$9$Y$-$+(B / $B$9$Y$-$G$J$$$+:F8!F$$7$?$[$&$,$$$$$s$8$c$J$$$N(B? $B$C$F5$$b!#(B
$B!!!D!DEPO?$9$k$H!"!V%@%&%s%m!<%I%\%?%s$r%/%j%C%/$9$k$H!"%@%&%s%m!<%I$r3+;O$7$^$9!W$H$f!<%Z!<%8$,=P$F$-$^$9$,!"$3$3$K<($5$l$k(B URL $B$rD>@\C!$1$P!"EPO?:n6H$J$s$+$7$J$/$C$F$b$=$N$^$^(B get $B$G$-$A$c$$$^$9$M$(!#$J$s$@$+$J$"!#(B
HP$B$K<+J,$NA4Mg2hA|$r7G:\!"2q
JPCERT/CC Seminar 2002 $B$N%Q%M%j%9%H$,40A48x3+$5$l$F$^$9$M!#(B
Internet Week 2002 $BAa4|3d0zDy@Z$OL@F|$N(B 20:00 $B$G$9$M!#(B
$B!!FC
$B!!M-;V$K$h$C$F%j%j!<%9$5$l$?(B
$B$+$s$J(B
3.6 $B$G$O!V(B$B%/%i%$%"%s%H$+$iHs>o$KD9$$%f!<%6L>$rAw$i$l$k$H!"%P%C%U%!%*!<%P!<%U%m!<$r5/$3$9$H$$$&LdBj(B
$B!W$,=$@5$5$l$F$$$k$=$&$G$9!#(B
$B$3$NB>$K$b!"%G%U%)%k%H$G$O(B TCP $B@\B3$Ojapanese/Canna
$B$O$9$G$K(B 3.6 $B$K$J$C$F$^$9!#(B
$B!!(Bbind 4.9.10 $B0JA0$N(B bind 4 $B$K(B 1 $B$D!"(Bbind 8.3.3 $B0JA0$N(B bind 8 $B$K(B 3 $B$D$N7j$,$"$kLOMM!#FC$K(B bind 4 / 8 $BN>J}$,1F6A$r
$B!!BP1~$9$k$K$O!"(Bbind 4.9.11, 8.2.7, 8.3.4 ($B$^$@8x3+$5$l$F$$$J$$$_$?$$(B) $B$K(B upgrade $B$9$k$+!"(Bbind 9 $B$K0\9T$9$k!#$$$:$l$NLdBj$K$D$$$F$b!"2sHr$9$k$K$O(B recursion $B$rDd;_$9$l$P$h$$$=$&$@!#(B
$B$C$F!"!V%-%c%C%7%e%5!<%P$H%>!<%s%5!<%P$OJ,N%$7$F1?MQ$9$k!W$r
$B!!(Bconnect24h ML $B$N(B [connect24h:5103] Bind 4&8 serious vulnerabilities $B$+$i$O$8$^$k%9%l%C%I$G$O!"(Bbind 8 $B$G$OF0$/$1$I(B bind 9 $B$G$OF0$+$J$$(B ($B$N$G(B bind 9 $B$K0\9T$G$-$J$$(B!) $BOC$KH/E8$7$F$$$^$9!#(B Internet Week 2002 $B$N(B DNS DAY $B$N8a8e$K$O!"$=$&$$$&OC$b=P$k$N$+$J$"!#(B ($B$*$b$$$C$-$j(B JPCERT/CC Seminar 2002 $B$H%+%A$"$C$F$k$7!D!D(B)
$B!!(Bbind 4.9.10, 8.2.6, 8.3.3 $BMQ$N(B patch $B$,=P$F$$$^$9!#(B
$B!!$i$`$8$#$5$s$,(B Vine Linux $BMQ;d2HHG(B rpm $B$r:n$C$F$$$i$C$7$c$$$^$9(B ($B>pJs$"$j$,$H$&$4$6$$$^$9(B)$B!#(B
$B!!(BCERT Advisory CA-2002-31 Multiple Vulnerabilities in BIND $B$bEP>l$7$^$7$?!#(B
Vine Linux 2.5: bind $B$K%;%-%e%j%F%#%[!<%k(B
Debian GNU/Linux: [SECURITY] [DSA-196-1] New BIND packages fix several vulnerabilities
Red Hat Linux: [ALERT] Remote vulnerabilities in BIND 4 and 8
Turbolinux: bind - 3$B$D$N%;%-%e%j%F%#>e$NLdBj(B
OpenBSD: November 14, 2002: A buffer overflow exists in named(8) that could lead to a remote
crash or code execution as user named in a chroot jail.
patch: 3.2,
3.1,
3.0
FreeBSD: FreeBSD-SA-02:43 multiple vulnerabilities in BIND [REVISED]
NetBSD: NetBSD Security Advisory 2002-029: named(8) multiple denial of service and remote execution of code
$B!!?75,(B: NetBSD, Turbolinux$B!#99?7(B: FreeBSD$B!#(B 2002.11.15 $B$N$H$3$m$KDI5-!&99?7$7$F$*$$$?!#(B
$B!!$"$H!"(Bbind 4.9.11, 8.2.7, 8.3.4 $B$b(B$B=P$F$^$9(B$B$M!#(B
$B$$$^$4$m$G$"$l$G$9$,!"(B samhain 1.6.3 $B=P$F$^$9$M!#(B
CERTCC-KR $BF|K\8lHG(B by $B%;%3%`>e?.1[(B
$B$,$"$k$=$&$G$9!#(Bnobody $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9(B
($B>R2p$,CY$/$F$4$a$s$J$5$$(B)$B!#(B
(typo $B=$@5(B: $B:#@t$5$s46
$B!VFbIt%(%i!<(B:13$B!W$HI=<($5$l!"%"%C%W%G!<%H$,40N;$7$J$$(B ($B%H%l%s%I%^%$%/%m(B)$B!#F|K\8l4D6-$G$O(B PC-Cillin $B$O;H$($J$$$N$+!D!D!#ITJX$d$N$&!#(B
$B!V%A%g%`%9%-!<(B 9.11$B!W%*%j%8%J%k(BT$B%7%c%D(B
$B$J$s$F$"$C$?$N$M!#(B
Internet Explorer $B$GMzNr$r%/%j%"$7$F$b:#F|%"%/%;%9$7$?%Z!<%8$,MzNr$+$i:o=|$5$l$J$$(B $B!#(Bsafe mode $B$G$9$+!D!D!#!V%Q%=%3%sJ82=!W$G$9$J$"!#(B
$B$3$NLdBj$O!"(Bmshtml.dll $B%P!<%8%g%s(B 6.0.2720.3000 $B$K$*$$$F=$@5$5$l$^$7$?!#(B $B8=:_$O!"$3$N=$@5$r4^$s$@!"$h$j?7$7$$(B Internet Explorer 6 Service Pack 1 $B$,%j%j!<%9$5$l$F$$$k$?$a!"(BInternet Explorer 6 Service Pack 1 $B0J9_$r%$%s%9%H!<%k$9$k$3$H$r?d>)$7$^$9!#(B
$B$@$=$&$G$9!#(B
$BO"K.CO:[!"JF3$73$NDc<~GH%=%J!
$BL55$NO$J$N$O%Q%=%3%s$N$;$$!)(B (CNET)$B!#(B $B463PE*$K$9$4$/F10U$G$-$k$J$"!#(B
$B%o!<%`$r1?$s$G$7$^$C$?%&%$%k%97Y9p%a!<%k(B (CNET)$B!#$&!<$`!D!D!#(B
$B6/NO%;%-%e%j%F%#!<$N!X(BSE Linux$B!Y$K2~NIHG(B (CNET)$B!#MWCmL\(B?
$B%O%C%+!<$N%_%H%K%C%/;a$NCx=q$+$i!V<:$o$l$?!WBh(B1$B>O$,%M%C%H$G8x3+(B (WIRED NEWS)$B!#(B $BMhG/$K$O@\B3$G$-$k$h$&$K$J$k$s$G$9$M!#(B
$B>.NS$5$s$+$i(B ($B>pJs$"$j$,$H$&$4$6$$$^$9(B):
$B$*$=$i$/(BInterop$B4XO"$G(Bnttpc$B$,8\5R$K%a!<%k$rAwIU$9$k$?$a$KMxMQ$7$F$$$k%"%I%l%9!V(Binterop_01@nttpc.co.jp$B!W$,C/$+$i$bEj9F2DG=$K$J$C$F$$$F!"%&%#%k%9$,N.$l$?$j$7$F$$$^$9!#(B
$BAGE($G$9$M!#(B
$B$7$P$i$/A0$+$i(B server $B$K$*$$$F0[>o$J(B core dump $B$,H/@8$7$F$$$?$N$@$,!"(B $B$I$&$d$i(B memory $B$,Ie$C$F$$$?LOMM!#8r49$7$F(B memtest86 $B$G:F%A%'%C%/Cf!#(B
$BKcLt@oAh$+$i%F%m@oAh$X(B $B!"(B $BHnBg2=$9$kJF73$NHkL)ItBb(B (tanakanews.com)$B!#(B $B$$$^$=$3$K$"$k(B ($B1i=P$5$l$?(B) $B4m5!!"$C$F46$8(B?
$B?7
2002$BG/(B11$B7n(B8$BF|8=:_!"(BW32/Bugbear$B$K4X$9$kAjCL!&FO=P$,!"(B10$B7n$h$jN_7W$G(B400$B7o0J>e$H$J$C$?$?$a!"6[5^BP:v>pJs$H$7$F7G:\$7$^$7$?!#(B
$B$@$=$&$G$9$,!"
IT$B%;%-%e%j%F%#I>2A5Z$SG'>Z%;%_%J!<3+:E$K$D$$$F(B (IPA ISEC)$B!#(B12/6$B!"El5~ETJ85~6h!"L5NA!#(B
Tea Room for Conference #1115$B!#C&NO!#(B
$B%U%!%`%*!<%W%s%=!<%9%;%_%J!<(B:
Linux$B%5!<%P%;%-%e%j%F%#(B[$BCf5i(B]$B!!9=C[JT(B (11/28)$B!"(B
Linux$B%5!<%P%;%-%e%j%F%#(B[$BCf5i(B]$B!!1?MQJT(B (11/28)$B!#(B
$B3F!o(B12,000-$B!"2#IM4XFb!#(B
$B!!$$$D$>$d$N(B$B$,$s$P$l(B!! $B%2%$%D7/(B$B$GOCBj$K$J$C$F$$$?7o$+$J$"!#F,$NDK$$!V;EMM!W$G$9$M!#$3$&$$$&$3$H$,$"$k$N$G!"!V(BWindows $B;H$&$H$-$O%G%U%)%k%H$G4IM}
$B!!$d$C$HFI$s$@!#$$$-$J$j!V%;%-%e%j%F%#%[!<%k(B memo $B%a!<%j%s%0%j%9%H!W$H$+=P$F$-$F$S$C$/$j$7$?(B (^^;)$B!#(B $B8D?ME*$K$O!"(B
5.4 $B9`$K<($5$l$F$$$k$h$&$K!"L14V>ZL@=q$G%3!<%I=pL>$5$l$?!"(BGPKI/LGPKI $B%k!<%H>ZL@=q%$%s%9%H!<%i$rMQ0U$9$k!#(B
$B$5$i$K(B GPKI/LGPKI $B%k!<%H>ZL@=q$NFbMF$r3NG'$7$?$$?M$N$?$a$K!"%U%#%s%,!<%W%j%s%H$r5-:\$7$?%U%!%$%k$KL14V>ZL@=q$GEE;R=pL>$r;\$7$F(B web $B$K7G:\$9$k!#(B $B$3$N(B web page $B$O!"L14V>ZL@=q$rMxMQ$7$?(B SSL page $B$GMQ0U$9$k$3$H$,K>$^$7$$(B ($B$,I,?\$G$O$J$$(B)$B!#(B
$B$,$$$$$h$&$J5$$,!#!V(BCD-ROM $B$rM9AwEy$K$FG[I[!W$O!"HsEE;RE*967b$KBP$9$kBQ@-$O$"$^$j9b$/$J$$$H;W$&$7!#(B($B$b$7$+$7$F!"=qN1$H$+$GAw$C$F$/$l$F$k$N$+$J$"!D!D(B)
$B!!4XO"(B:
$B>pJs=hM}3X2q(B $BBh(B5$B2s%3%s%T%e!<%?%;%-%e%j%F%#%7%s%]%8%&%`(B(CSS 2002) $BH/I=%9%i%$%I(B (securit.etl.go.jp)
$B!VEE;R@/I\$NG'>Z4pHW$K=EBg7g4Y!W!!>pJs=hM}3X2q$GO@J8H/I=(B ($BKhF|(B)
$BAmL3>JEE;R?=@A%7%9%F%`$N7g4YLdBj!"3X2q$O!HG'Dj!I!!:#8eO@Ah$b(B ($BKhF|(B)
$B!V(B$BEv3X2q(B$B!W$O!"!V%;%-%e%j%F%#!<$K$D$$$F$O0l@~$N3X2q$G$"!W$k$J$i!"(B [memo:4606] $B>p=h3X2q$N$I$"$[! $BOC$d(B Tea Room for Conference #1115 $BOC$rL@3N$K(B fix $B$7$J$5$$!#(B
$B0lJ}!"AmL3>JBg?C41K<4k2h2]$N0$8~BYFsO:2]D9Jd:4$O!"(B($BCfN,(B) $B%U%#%s%,!<%W%j%s%H$NI=<($K!"L14VG'>Z5!4X$rMxMQ$7$?(BSSL$B$rMxMQ$9$k$3$H$K$D$$$F!V2>$KEE;R?=@A%7%9%F%`$N%k!<%H>ZL@=q$,!"DL?.>e$G2~$6$s$5$l!"2~$6$s$5$l$?%k!<%H>ZL@=q$,%f!<%6!<$N%V%i%&%6$KAH$_9~$^$l$?$H$7$F$b!"EE;R?=@A%7%9%F%`$N%5%$%H$K@\B3$9$l$P!"!X?.Mj$G$-$J$$!Y$H$7$F$O$8$+$l$k$o$1$G!"%f!<%6!<$OLdBj$rG'<1$G$-$k$O$:$@!W$HDNS $B:>>N$J$I$HAH$_$"$o$;$k$3$H$G56%5!<%P$KM6F3$5$l$k$+$b$7$l$J$$!"$H$$$&G'<1$O$I$3$K$b$J$$LOMM!#(B
$B"#"#%3%i%`"#"#!!JR;3AmL3Aj$K4|BT!!!JB@ED!!0$Mx:4!K(B ($BKhF|(B)
$BMk$,Mn$A$?$j$7$J$$8B$j!"JR;3AmL3Aj$K$O4|BT$G$-$J$$$h$&$J5$$,!D!D!#(B
$B!!(BViva! $B=;4p%M%C%H!#$9$P$i$7$9$.$F!"N^$,=P$^$9!#(B
VeriSign$B!"%k!<%H%5!<%P0\@_(B (ZDNet)$B!#(BJ.ROOT-SERVERS.NET.$B$N(BIP$B%"%I%l%9$,JQ99$5$l$k(B (slashdot.jp) $BOC$M!#(B
$BJF(BVeriSign$B$O(B11$B7n(B5$BF|Lk!"%P!<%8%K%"=#KLIt$NF1l=j$K0\@_$7$?!D!D(B($BCfN,(B)$B!D!D@_CV>l=j$NJQ99$K2C$(!"$3$l$i(B2$BBf$rEE;RE*$KJ,N%$7!"0[$J$k%M%C%H%o!<%/%"%I%l%9$r3d$jEv$F$?$H$$$&!#(B
$B$@$=$&$G$9!#(B
$B$=$l$K$7$F$b!">pJs8x3+$,$J$K$b$5$l$J$$$H$3$m$r8+$k$H!"(B [memo:4606] $B>p=h3X2q$N$I$"$[! $B$NOC$C$F!"$$$^$@$K(B2002$BG/(B7$B7n(B16$BF|(B $B$NCJ3,$+$i?J$s$G$J$$$s$G$9$+$M!#(B
instantssl $B$H$$$&$b$N$,$"$k$=$&$G$9!#(BLef $B$5$s!"$j$g$&$o$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#>R2p$,CY$/$F$9$$$^$;$s!#(B
Free Sun Alert Notifications $B$H$$$&$b$N$,$"$k$s$G$9$M!#CN$j$^$;$s$G$7$?!#(B
$B=;4p%M%C%H!$8=:_$N7j$OLs(B10$B8D(B (slashdot.jp)$B!#!V(B$BCOJ}<+<#%;%s%?!$B!W!"$N!V(B1 $B2s!W$NCf?H$O2?$@$C$?$s$@$m$&!#(B
$B%"%s%A%&%#%k%9$N%G!<%?$b(B update $B$5$l$F$J$$$h$&$@$7!"4{B8$N%&%#%k%9$r(B
10 $BI$$/$i$$%P%i$^$/$@$1$GHo32?SBg$K$J$C$?$j$7$J$$$s$@$m$&$+!#(B
[aml 30636] $BJs9p(B_$B=;4p%M%C%H0c7{AJ>Y:[H=(B $B$H$+!"(B $B5~ET;T$K=;4p%M%C%H$NITI~?3::$r@A5a!!;TL1CDBN(B ($BKhF|(B) $B$J$s$F5-;v$b=P$F$$$^$9!#$^$@$^$@$3$l$+$i$G$9!#(B
Windows2000 Datacener Server$B$G%G!<%?%Y!<%9%"%W%j%1!<%7%g%s$N%Q%U%)!<%^%s%9Dc2<(B (Microsoft, info from $BCfB<@5;0O:$N%[%C%H%3!<%J!<(B)$B!#(B
Veritest
($B!V(B$B:GBg(B32CPU$B!"(B32GB$B%a%b%j!"(B4$B%N!<%I%/%i%9%?4D6-$G%F%9%H(B
$B!W(B)
$B$rDL2a$7$?%"%W%j$K$O$3$NLdBj$OH/@8$7$F$$$J$$!"$H$5$l$F$$$k!#(B
$B$=$N(B Veritest $B$G$9$,!"(BOracle $B$d(B Sybase $B$C$FJ8;zNs$,$I$3$K$b8+$($^$;$s$M!#(B IBM $B$O$A$c$s$HF~$C$F$$$F!"(BDB2 7.2 $B$O(B Datacenter Server YES $B$K$J$C$F$^$9$M!#(B Microsoft SQL Server 2000 - Japanese Release v.8.0 $B$,(B Datacenter Server YES $B$K$J$C$F$J$$$C$F$N$O!"%7%c%l$K$J$i$J$$$N$G$o!D!D!#(B
Security Vulnerability in the ypserv(1M) and ypxfrd(1M) Daemons
$BBP>](B: Solaris 2.5.1$B!A(B9
Web-Based Enterprise Management (WBEM) on Solaris 8 Installs Insecure Files
$BBP>](B: Solaris 8
On Solaris 8 An Unprivileged User may Cause a System Panic if the 0x02 Bit is Set in "kmem_flags"
$BBP>](B: Solaris 8
Sun Linux/Sun Cobalt Security Vulnerability in "fetchmail"
$BBP>](B: Sun Linux 5.0
TCP Reset Segment Generation Could Result in a Denial of Service Attack
$BBP>](B: Solaris 2.5.1$B!A(B8
Solaris 2.5.1 $B$O$b$&(B fix $B=P$J$$$s$G$9$M!D!D!#(B
J.ROOT-SERVERS.NET.$B$N(BIP$B%"%I%l%9$,JQ99$5$l$k(B (slashdot.jp)$B!#(B $B;d$b(B JANOG ML $B$GCN$C$?%/%A!#$5$C$-99?7$7$?!#(B
PE_BRID.A ($B%H%l%s%I%^%$%/%m(B)$B!"(B
Brid $B$K4X$9$k>pJs(B (Microsoft)$B!#$5$C$-
$BJF3$73%5%$%H$K%;%-%e%j%F%#!<%[!<%kH/3P(B (WIRED NEWS)$B!#(B
Domino $B$M$?(B?
JPCERT/CC Seminar 2002 (internetweek.jp)
$B$G$9$,!"6=6H>e(B ($B>P(B)$B!"%5%V%?%$%H%k$r!V;38}1Q;a(B vs NIRT $BK?;a(B
60 $BJ,(B 1 $BK\>!Ii!W$H$+$K$7$?J}$,$$$$$N$G$O$J$$$+!"(B
$B$H$$$&OC$,$A$i$[$i!#(B
$B!!(BDoS $B967b$G$9$M$(!D!D!#(B $B:G6a$N(B mail server $B$K$O(B anti-virus $B5!G=$,F~$C$F$$$?$j$9$k$H;W$&$N$G$9$,!"(Banti-virus $B%=%U%H7/$O$1$C$3$&(B CPU $B$r?)$&$N$G!"BgNL(B mail $B$K$h$k(B DoS $B967b$r
$B!!(B2002.11.02
$B$N(B
$B%(%i!<(B:"$B%7%^%s%F%C%/
$B!!(BIE 6 SP1 $B$G$O!"(BCookie $B$N!V(BHttpOnly $BB0@-!W$r2re$O!"$@$m$&$1$I!#(B
$B$_$J$5$s$b$4B8CN$G$7$g$&$,!"(B $B$"$($F$*OC$7$F$*$-$^$9!#$3$l$O(B XSS $B$NLdBj$r2r7h$7$^$;$s(B! $B@H$B!!$"$j$^$;$s$,!">.$5$J@Q$_=E$M$,$@$$$8$G$9$+$i!"@_Dj$7$F$*$-$^$;$&!#(B
$BL@F|$OFf$N(B$B1_HW(B UFO $BAH?%4XO"9T;v$N$?$a!"$3$N%Z!<%8$N99?7$O$"$j$^$;$s!#(B
Virus Killer $BKLEM$N7}(B 2003 (viruskiller.jp)$B!#(B
$BCf?H$O(B
$B%$!<%U%m%s%F%#%"$H?p@12J5;
Microsoft Conference 2002/fall$B3+Kk(B $B!A(BWindows .NET Server 2003$B$,K\K.=i8x3+(B (PC Watch)$B!#(B $B!V$[$)$i!"$A$c$s$H(B port 135, 137$B!A(B139, 445 $B$b%G%U%)%k%H$G3+$$$F$^$9$7!W(B $B$H$$$&%G%b$O!D!D$J$$$N$@$m$&$J!#(B
$B:>5=;U$dE%K@$N%+%b$K$5$l$k(B NASA (WIRED NEWS)$B!#(B $B$=$&$$$($P!"$3$N$^$(K\20$K9T$C$?$i(B $BF|K\4k6H$O(BNASA$B$N4m5!4IM}$K3X$Y(B! $B$J$s$FK\$,$"$C$?!#(B $B:G6a$N(B NASA $B$O$$$m$$$m%"%l$J$N$G3X$P$J$$J}$,$$$$$h$&$J5$$b$9$k$N$@$,!#(B $B$I$C$A$+$H$$$&$H(B $B%I%i%4%s%U%i%$!=%_!<%k1'Ch%9%F!<%7%g%s!&0-L4$N?? $B$NJ}$,6=L#?<$$$N$G$O!"$H;W$&!#(B
$B%H%l%s%I%^%$%/%m(B $B%&%$%k%9%P%9%?!<(B 2003 $B=P$F$$$k$h$&$G$9$M!#(B $B:G?7$N%=%j%e!<%7%g%s(B - $BA4@=IJ(B $B$K$b$$$m$$$m$H>pJs$,=P$F$$$k$N$G!"F~$l$kA0$KFI$s$G$*$-$^$;$&!#(B
g4u ("ghost for unix") 1.8 $B$,=P$?$=$&$G$9!#(BNetBSD 1.6 base $B$@$=$&$G$9!#(B
$B!!(BIE 6 $B$N>\:Y@_Dj$K$"$k!V%@%&%s%m!<%I$7$?%W%m%0%i%`$N=pL>$r3NG'$9$k!W(B (default: off) $B$r%A%'%C%/$9$k$H!"%U%!%$%k$r3+$/$H$-$K=pL>$,<+F0E*$K%A%'%C%/$5$l$k$h$&$K$J$j!"$J$+$J$+$&$l$7$$$H$$$&OC!#(B $B=pL>$,$"$l$P$=$l$rI=<($N>e$G3NG'%@%$%"%m%0$K$J$k$7!"=pL>$,$J$1$l$P7Y9p%@%$%"%m%0$K$J$k!#(B
$B!!$5$i$K!"%l%8%9%H%j@_Dj$K$h$j!"1&%/%j%C%/$G!V=pL>$r3NG'$7$F3+$/(B...$B!W$r@_Dj2DG=$@$H%U%)%m!<$5$l$F$$$k(B
[memo:4938]$B!#(B
.reg file: 2000/XP, 98/NT 4.0$B!#
$B!!$$$$$G$9$M$'1i=,!#$7$?$$$J$"!#(B
OpenBSD 3.2 $B=P$?LOMM!#(B
$B=;4p%M%C%H;22C$N@'Hs!!El5~!&9qN);T$,;TL10U8~D4::(B ($BKhF|(B)$B!#(B
NEC$B!"%Q%=%3%s$N(BAC$B%"%@%W%?$J$I(B230$BK|Bf$GM"F~
5th JWNTUG Open Talk in MSC $BBg:e(B (JWNTUG)$B!#(B
$B$&!<$_$e!"(B18 $BL>$O$5$S$7$$$N$*!#(B
60$BG/Be$N@8J*2=3XJ<4o
[aml 30611] Re: $B=;4p%M%C%H$N!V8eLg$NO5!W8D?M>pJsJ]8nK!0F$GL1
$B$@$=$&$G$9!#(B
[aml 30595] $B!N>pJs!OFbIt9pH/
$BL5@~(BLAN$B%;%-%e%j%F%#!<$N?7J}<0!X(BWPA$B!YH/I=(B (WIRED NEWS)$B!#(B
$BD4$Y$F$_$?$i%3%$%D$b%h%o%h%o$G$7$?!"$J$s$F$3$H$K$J$i$J$1$l$P$$$$$,!D!D!#(B
ICANN$B!"CO0hBeI=M};v$N8xA*@)$rGQ;_$X(B (WIRED NEWS)$B!#(B
ICANN $BI:N.Cf(B?
$B%8%c%9%H%7%9%F%`!"%a!<%k$K$h$k5!L)O31L$rKI$0(B
$B!V(BSEQRIA Mail$B!WH/Gd(B (INTERNET Watch)$B!#(B
ConceptBase $B$r%(%s%8%s$KMxMQ$7$?%a!<%k%U%#%k%?%=%U%H!"$@$=$&$G!#(B
Windows 2000$B$,(BISO$B$N%;%-%e%j%F%#G'Dj$r
$B%3%T!<%3%s%H%m!<%k(B CD$B!"!VGc$o$J$$!W$,#33d(B
(japan.internet.com)$B!#$^$"$=$s$J$b$s$G$7$g$&!#(B
$B$?$J$+$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
AN HTTPD
1.41f $B$,=P$F$$$^$9!#>/$J$/$H$b(B 1.41e $B$K!V30It$+$i%U%!%$%k$r:o=|$5$l$k$3$H$,$"$k!W$H$$$&LdBj$,$"$C$?$h$&$G$9!#(B
$B$G!"$I$3$,=EMW$+$H$$$&$H!"7G<(HD%5%$%H(B ($BCfN,(B)
$B$@$1$G$O$J$/!"$3$3$N5DO@$G$O(B Google $B$KBeI=$5$;$F$$$^$9$,!"(BWeb
$B8!:w%5%$%HA4HL$,5,@)BP>]$H$J$k$H$$$&O@E@$rDs<($7$F$$$k$3$H$G$9(B ($BCfN,(B)$B!#(B
$B$3$NE@!"9>:j;a(B ($B>.EgCm(B: $B7P:Q;:6H>J>pJs@/:v2]2]D9Jd:4(B)
$B$O!"8!:w%(%s%8%s$,BP>]$H$J$k$3$H$r!VG'$a$F$$$^$9!W!#(B
$BH`$O!"8=&MQ8!:w%5%$%H$N1?MQ$G(B opt out
$B$,:NMQ$5$l$F$$$k$H$$$&$3$H$r$b$C$F!"l$r$H$k$K$;$h!"
$B!!(BNorton Internet Security 2003 $B$K$*$$$F!"EE;R%a!<%k%W%m%-%7$,!"@5>o$J%a!<%k$r:o=|$7$F$7$^$&$H$$$&;vNc$,$"$kLOMM!#860x$O:#$N$H$3$mITL@!#(B
$B!!4XO"JsF;(B: $B!ZB3Js![%7%^%s%F%C%/$N%;%-%e%j%F%#%=%U%H!"@5>o%a!<%k$r:o=|$9$kIT6q9g(B ($BF|7P(B BP)$B!#(B
$B!!(BKnowledge Base $B$,99?7$5$l$?!#(B
$B!T(B $B860x(B $B!U(B
Norton Internet Security 2003 $B$N%9%Q%`7Y9p5!G=$O!"EE;R%a!<%k$r%9%-%c%s$9$k:]$K!"%a%b%j>e$G%a!<%k$NCf?H$rE83+$7%A%'%C%/$7$^$9$,!"BgNL$NEE;R%a!<%k$rO"B3$7$F(B $Bl9g$K!"$^$l$K%a%b%j4IM}>e$NLdBj$,H/@8$9$k$3$H$K5/0x$7$^$9!#(B
$B!T(B $BH/@8$N3NG'$5$l$F$$$k4D6-(B $B!U(B
$B?tF|4V5/F0$7$D$E$1$F$$$k%3%s%T%e!<%?$G!"%a!<%k%=%U%H$N@_Dj$K$h$j%a!<%k%5!<%P!<$KIQHK$K%"%/%;%9$9$k$h$&$K@_Dj$5$l3n$DBgNL$NEE;R%a!<%k$N$B!!BgNL$C$F$I$N$/$i$$$NNL$J$s$@$m$&!#9b!9?tF|4V$G$H$$$&$N$@$+$i!"(B1 $BF|(B 10 $BK|DL$/$i$$
$B!T(B $BBP:v(B $B!U(B
$BJ@$B!!L@F|$G$9$J!#(BSINya $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B
$B!!$$$d$!!D!D6/Nu$G$9!#$3$s$J;vNc$,8=
$B!!(Bapache, bind, sendmail $B$G
$B$@$=$&$G$9!#(B
OpenSSH$B$K$D$$$F$O!"%=%U%H%&%'%"@_Dj$K$h$kBP:v$,8=9T%P!<%8%g%s$G$O9T$($J$$!"$5$i$K$O%=!<%9%3!<%I$N%P!<%8%g%sJQ99$r$9$k$H@5>o$K5!G=$7$J$/$J$k$?$a!":#2s$OBP>]30$H$7$?!#(B
$BFC$K!"F|K\9qFb$NAH?%$,4X78$9$k%$%s%7%G%s%H$K$D$$$F$O!"$<$R(BJPCERT/CC$B$KO"Mm$7$F$[$7$$(B
$B$H$$$&$3$H$@$=$&$G$9!#(B
$B!!$$$d$"!"B>NO$5$s!"$^$H$aJ}$&$^$$$J$"!#(B $B$H$$$&$o$1$G!"e=\$K3+:EM=Dj$NLOMM!#(B $B:#EY$O;~4VD9$$$>!
$B!!$*$b$$$C$-$j;~4|$r0o$7$F$$$^$9$,!D!D!#(B
$B!!(BSQL Server 7.0/2000, MSDE 1.0/2000 $B$K
$B!!(Bpatch $B$,$"$k$N$GE,MQ$9$l$P$h$$!#(BMS02-061 patch $B$ON_@QE*(B patch $B$K$J$C$F$$$k!#(B
$B!!(BSQL Slammer $B%o!<%`(B $BEP>l$K$"$o$;$F!"(BMS02-061 patch $B$,=P$7D>$5$l$F$$$k!#(B 317748 patch $B$,4^$^$l!"$+$D%$%s%9%H!<%i7A<0$K$J$C$?!#(B
$B!!(B2002.09.17 $B$N(B MS Word$B$KJ8=q$N%O%$%8%c%C%/$r5v$9LdBjE@(B $B$KDI5-$7$?!#(BMS02-059 $B$G2r@b$5$l$F$$$k!#(Bpatch $B$b$"$k!#(B
$B!!(B2002.10.02 $B$N(B Windows XP $B$N(B $B!V%X%k%W$H%5%]!<%H(B $B%;%s%?!pJs(B $B$KDI5-$7$?!#(BMS02-060 $B$G8DJL=$@5%W%m%0%i%`$,8x3+$5$l$F$$$k!#(B
$B!!(BWindows 2000 $B$K
Windows 2000 $B$G$O!"(B[$B%U%!%$%kL>$r;XDj$7$F
Windows 2000 $B$N%G%U%)%k%H$G$O!"%7%9%F%`%k!<%H%G%#%l%/%H%j$r4^$`%k!<%H%G%#%l%/%H%j$O(B Everyone $B%U%k%3%s%H%m!<%k$@!#(B
$B%7%9%F%`%k!<%H%G%#%l%/%H%j$K%H%m%$$NLZGO$r@_CV$7$F$*$/$H!"%m%0%*%s;~$J$I$K!"K\J*$N$+$o$j$K%H%m%$$NLZGO$,
administrator $B$,%m%0%*%s$7$F$/$l$?$j$9$k$H!"$"$H$O$d$jJ|Bj!#(B
$B!!$,$"$k$,!"(B
$B%;%-%e%j%F%#!&%9%?%8%"%`(B 2002
$B$K$*$$$F(B SecurityFriday $B$5$s$b$3$NLdBj$rDs5/$5$l!"$O$^$b$H$5$s$,Z$5$l$F$$$k!#(B
2002.10.19 $B$N@.2L(B
$B$r;2>H$5$l$?$$!#(B
$B!!BP1~$H$7$F$O!"%7%9%F%`%k!<%H%G%#%l%/%H%j$N(B ACL $B$rE,@Z$K@_Dj$9$k!"$,<($5$l$F$$$k!#$7$+$7!"!V%Q%9$K%7%9%F%`%k!<%H%G%#%l%/%H%j$,4^$^$l$F$7$^$&!W;v$OC*>e$2$G$$$$$N$+(B?
$B!!(BCVE: CAN-2002-1184
$B!!(BWindows 2000 / XP $B$K
$B!!=$@5%W%m%0%i%`$,$"$k$N$GE,MQ$9$l$P$h$$!#(B
$B!!(BIIS 4.0, 5.0, 5.1 $B$K?7$?$J(B 4 $B
$B%"%&%H%W%m%;%9$N8"8B$N>:3J$N@H
WebDAV $B$N%5!<%S%95qH]$N@H
IIS 4.0 $B$K$3$N
$B%9%/%j%W%H%=!<%9%"%/%;%9$N5v2D$N@H
IIS 4.0$B!"(B5.1 $B$K$3$N
IIS $B4IM}%Z!<%8$N%/%m%9%5%$%H%9%/%j%W%F%#%s%0$N@H
$B!!N_@QE*(B patch $B$,=P$F$$$k$N$GE,MQ$7$h$&!#(B
$B$?$@$7!"(BSite Server $B%f!<%6$O$"$i$+$8$a(B
JP317815
$B$r;2>H$7$F$*$/$3$H!#(B
IIS $B$r%"%&%H%W%m%;%9(B (IIS 5.0, 5.1 $B$N%G%U%)%k%H(B) $B$GF0:n$5$;$F$$$k>l9g!"(B
web $B%"%W%j%1!<%7%g%s$O(B IWAM_$B%3%s%T%e!<%?L>(B $B8"8B$G
WebDAV $B%j%/%(%9%H$KBP$9$k%a%b%j3d$j$"$F$KLdBj$,$"$k!#(B
$BFCDj$N%j%/%(%9%H$K$h$C$FBgNL$N%a%b%j$,3d$j$"$F$i$l$k$?$a$K%a%b%j$,8O3i$7(B OS $B$,0[>o=*N;$7$F$7$^$&!#(B
$B$3$NLdBj$O(B WebDAV $B$,M-8z$G$"$k>l9g$K$N$_H/8=$9$k!#(B
$B!V%9%/%j%W%H%=!<%9%"%/%;%9$N5v2D!W$rI,MW$H$9$k%U%!%$%k0lMw$K8m?"(B (!!)
$B$,$"$j!"7k2L$H$7$F(B .com $B%U%!%$%k$,0lMw$K4^$^$l$F$$$J$$!#(B
$B$3$N$?$a!"(B.com $B
$B%/%m%9%5%$%H%9%/%j%W%F%#%s%0LdBj$,(B 2 $B$DB8:_$9$k!#(B