RPC.ypasswdd service in Windows Server 2003?

RPC.ypasswdd service in Windows Server 2003?

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
RPC.ypasswdd service in Windows Server 2003? Doug Fox 10-17-2005
Posted by Doug Fox on October 17, 2005, 12:31 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
I scanned a Windows Server 2003 by a NSS 5.0 with the latest update. It
reported that it has found two vulnerabilities, RPC.ypasswdd service
vulnerability and Samba buffer overflow.

According to CERT and Security Focus, they are more *IX based
vulnerabilities.

What cause NSS identify these two vulnerabilites? How can I resolve this
issue?

Could someone please shed some light? Any pointers/comments are appreciated.

Thanks,




Posted by Volker Birk on October 17, 2005, 6:58 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
> I scanned a Windows Server 2003 by a NSS 5.0 with the latest update. It
> reported that it has found two vulnerabilities, RPC.ypasswdd service
> vulnerability and Samba buffer overflow.

Hm... did you really have UNIX services on it? And why Samba? ;-)
Perhaps LANGuard NSS is showing strange things here ;-)

> According to CERT and Security Focus, they are more *IX based
> vulnerabilities.

Yes.

> What cause NSS identify these two vulnerabilites? How can I resolve this
> issue?

Please ask GFI support.

BTW: http://www.nessus.org/ http://www.gnessus.org/
http://porz-wahn.berlios.de/

Yours,
VB.
--
"Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten
Gebrauch machen - und zwar ausgiebig - natürlich nur in dem Rahmen, den
Otto Schily mir noch zur Verfügung stellt."
Wolfgang Clement am 10.10.05 als Noch-Superminister


Similar ThreadsPosted
Windows Server 2003 earns Common Criteria rating December 19, 2005, 9:21 pm
SSRT3622 rev.0 HP-UX remote denial of service using AAA Server April 9, 2004, 6:10 am
SSRT3622 rev.0 HP-UX remote denial of service using AAA Server May 17, 2004, 2:24 pm
Netware 6.5 SP3 Server Remote Denial of Service? December 7, 2005, 8:58 am
SSRT3534 rev.2 HP-UX Apache HTTP Server Denial of Service (DoS) July 5, 2004, 3:39 pm
SSRT3587 rev.2 HP-UX Apache HTTP Server Denial of Service (DoS) July 5, 2004, 3:41 pm
SSRT4717 rev.0 Remote denial of service in Apache HTTP Server May 17, 2004, 2:28 pm
SSRT4717 rev.1 Remote denial of service in Apache HTTP Server July 16, 2004, 1:19 pm
Wormy bots exploiting Windows Server flaw September 1, 2006, 7:23 pm
SSRT3622 rev.3 HP-UX Apache HTTP Server Denial of Service, unauthorized access. July 5, 2004, 3:43 pm

The site map in XML format XML site map

Contact Us | Privacy Policy