{"id":32276,"date":"2021-12-13T15:00:20","date_gmt":"2021-12-13T06:00:20","guid":{"rendered":"\/ko-kr\/?p=32276"},"modified":"2023-12-01T14:04:03","modified_gmt":"2023-12-01T05:04:03","slug":"rsupport-security-notice-20211212","status":"publish","type":"post","link":"https:\/\/www.rsupport.com\/ko-kr\/resources\/notice\/notification\/rsupport-security-notice-20211212\/","title":{"rendered":"\uc54c\uc11c\ud3ec\ud2b8 Apache Log4j 2 \ucde8\uc57d\uc810(CVE-2021-44228) \uc601\ud5a5\ub3c4 \uc870\uc0ac \uc548\ub0b4"},"content":{"rendered":"<div class=\"post-content\">\r\n\t\t\t\t<p>\uc548\ub155\ud558\uc138\uc694, \uc54c\uc11c\ud3ec\ud2b8\uc785\ub2c8\ub2e4.<\/p>\r\n<p>\uc9c0\ub09c 12\uc77c \uacfc\ud559\uae30\uc220\uc815\ubcf4\ud1b5\uc2e0\ubd80\uac00 \uae34\uae09 \ubcf4\uc548 \uc5c5\ub370\uc774\ud2b8\ub97c \uad8c\uace0\ud55c, Apache Log4j \uc11c\ube44\uc2a4 \ubcf4\uc548 \ucde8\uc57d\uc810(CVE-2021-44228)\uc5d0 \ub300\ud574 \ub2f9\uc0ac\uc758 \uc81c\ud488 \uc11c\ube44\uc2a4 \uc601\ud5a5\ub3c4\ub97c \uc870\uc0ac \ubc0f \ubd84\uc11d\ud558\uc5ec \uc548\ub0b4\ub4dc\ub9bd\ub2c8\ub2e4.<\/p>\r\n<p><a href=\"https:\/\/www.msit.go.kr\/bbs\/view.do?sCode=user&amp;mPid=112&amp;mId=113&amp;bbsSeqNo=94&amp;nttSeqNo=3181117\" rel=\"noopener noreferrer\" target=\"_blank\"><u>\ubcf4\ub3c4\uc790\ub8cc \ubcf4\uae30<\/u><\/a><\/p>\r\n<p>* Log4j\ub780 \uae30\uc5c5 \ud648\ud398\uc774\uc9c0 \ub4f1 \uc778\ud130\ub137 \uc11c\ube44\uc2a4 \uc6b4\uc601-\uad00\ub9ac \ubaa9\uc801\uc758 \ub85c\uadf8\uae30\ub85d\uc744 \ub0a8\uae30\uae30 \uc704\ud574 \uc0ac\uc6a9\ud558\ub294 \ud504\ub85c\uadf8\ub7a8\uc73c\ub85c \uc5c5\ub370\uc774\ud2b8\ub97c \uc218\ud589\ud558\uc9c0 \uc54a\uc744 \uacbd\uc6b0, \ucde8\uc57d\uc810\uc744 \uc545\uc6a9\ud574 \uacf5\uaca9\uc790\uac00 \uc6d0\uaca9\uc5d0\uc11c \uacf5\uaca9\ucf54\ub4dc\ub97c \uc2e4\ud589\uc2dc\ud0ac \uc218 \uc788\uc5b4 \uc2ec\uac01\ud55c \ud53c\ud574\ub97c \uc785\uc744 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\r\n<p>\uc54c\uc11c\ud3ec\ud2b8\uc758 \uc11c\ube44\uc2a4 \uc601\ud5a5\ub3c4\ub97c \uc804\uccb4 \uc870\uc0ac\ud55c \uacb0\uacfc\ub294 \uc544\ub798\uc640 \uac19\uc2b5\ub2c8\ub2e4.<\/p>\r\n<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<strong>[\uc601\ud5a5\ub3c4 \uc870\uc0ac \u2013 2021.12.12 \uc2dc\ud589]<\/strong><br>\r\n&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;* \ucde8\uc57d\uc810 \ub0b4\uc6a9 : Apache Log4j 2.0 ~ 2.14.1, log4j-core \uc0ac\uc6a9 \uc2dc<br>\r\n&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;* \ub2f9\uc0ac \uc801\uc6a9 : Apache Log4j 2.11.2, log4j-core \ubbf8\uc0ac\uc6a9<\/p>\r\n<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;1) Apache Logback\uc744 \uc0ac\uc6a9\ud558\uae30 \ub54c\ubb38\uc5d0 \uc601\ud5a5\ub3c4 \uc5c6\uc74c<br>\r\n&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;(log4j 2\ub97c \uc0ac\uc6a9\ud558\ub3c4\ub85d \uc124\uc815\ud558\uc9c0 \uc54a\uc74c)<br>\r\n&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;2) \ucde8\uc57d \ubc1c\uc0dd log4j-core \ubbf8\uc0ac\uc6a9\uc73c\ub85c \uc601\ud5a5 \uc5c6\uc74c.(<a href=\"https:\/\/spring.io\/blog\/2021\/12\/10\/log4j2-vulnerability-and-spring-boot\" rel=\"noopener noreferrer\" target=\"_blank\"><u>\ucc38\uace0 \ub9c1\ud06c<\/u><\/a>)<\/p>\r\n<p>\ub2f9\uc0ac\ub294 \ucde8\uc57d\uc810\uc774 \ud655\uc778\ub41c \ubaa8\ub4c8(log4j-core)\uc744 \uc0ac\uc6a9\ud558\uc9c0 \uc54a\uae30\uc5d0 \uc774\ubc88 \uc0ac\ud0dc\uc5d0 \ub300\ud55c \ud53c\ud574 \ubc0f \uc601\ud5a5\uc774 \uc5c6\uc2b5\ub2c8\ub2e4.<br>\r\n\ub610 \uc54c\ub824\uc9c4 \ubcf4\uc548 \uad00\ub828 \ucde8\uc57d\uc810\uc5d0 \ub300\ud558\uc5ec \ub298 \uc2e0\uc18d\ud558\uac8c \ud328\uce58\ub97c \uc801\uc6a9\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4.<br>\r\n\ubcf4\uc548\uc0c1 \ubb38\uc81c\uac00 \uc5c6\uc73c\ub2c8 \uc548\uc2ec\ud558\uace0 \uc774\uc6a9\ud558\uc154\ub3c4 \ub429\ub2c8\ub2e4.<\/p>\r\n<p>\uc55e\uc73c\ub85c\ub3c4 \uc548\uc815\uc801\uc778 \uc11c\ube44\uc2a4\ub97c \uc81c\uacf5\ud558\uae30 \uc704\ud574 \uafb8\uc900\ud788 \ub178\ub825\ud558\uaca0\uc2b5\ub2c8\ub2e4.<\/p>\r\n<p>\uac10\uc0ac\ud569\ub2c8\ub2e4.<\/p>\r\n\t\t\t\t\t\t\t<\/div>","protected":false},"excerpt":{"rendered":"","protected":false},"author":3,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[99],"tags":[],"class_list":["post-32276","post","type-post","status-publish","format-standard","hentry","category-notification"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/posts\/32276","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/comments?post=32276"}],"version-history":[{"count":4,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/posts\/32276\/revisions"}],"predecessor-version":[{"id":53728,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/posts\/32276\/revisions\/53728"}],"wp:attachment":[{"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/media?parent=32276"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/categories?post=32276"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.rsupport.com\/ko-kr\/wp-json\/wp\/v2\/tags?post=32276"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}