Go Back   Wireless and Wifi Forums > News > Newsgroups > comp.security.misc
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-17-2005, 04:31 PM
Doug Fox
Guest
 
Posts: n/a
Default RPC.ypasswdd service in Windows Server 2003?

I scanned a Windows Server 2003 by a NSS 5.0 with the latest update. It
reported that it has found two vulnerabilities, RPC.ypasswdd service
vulnerability and Samba buffer overflow.

According to CERT and Security Focus, they are more *IX based
vulnerabilities.

What cause NSS identify these two vulnerabilites? How can I resolve this
issue?

Could someone please shed some light? Any pointers/comments are appreciated.

Thanks,



Reply With Quote
  #2 (permalink)  
Old 10-17-2005, 04:58 PM
Volker Birk
Guest
 
Posts: n/a
Default Re: RPC.ypasswdd service in Windows Server 2003?

Doug Fox <dfox138-no-spam@hotmail.com> wrote:
> I scanned a Windows Server 2003 by a NSS 5.0 with the latest update. It
> reported that it has found two vulnerabilities, RPC.ypasswdd service
> vulnerability and Samba buffer overflow.


Hm... did you really have UNIX services on it? And why Samba? ;-)
Perhaps LANGuard NSS is showing strange things here ;-)

> According to CERT and Security Focus, they are more *IX based
> vulnerabilities.


Yes.

> What cause NSS identify these two vulnerabilites? How can I resolve this
> issue?


Please ask GFI support.

BTW: http://www.nessus.org/ http://www.gnessus.org/
http://porz-wahn.berlios.de/

Yours,
VB.
--
"Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten
Gebrauch machen - und zwar ausgiebig - natürlich nur in dem Rahmen, den
Otto Schily mir noch zur Verfügung stellt."
Wolfgang Clement am 10.10.05 als Noch-Superminister

Reply With Quote
  #3 (permalink)  
Old 10-20-2005, 01:09 AM
Doug Fox
Guest
 
Posts: n/a
Default Re: RPC.ypasswdd service in Windows Server 2003?

a friend asked this on the GFI forum. Until now, there is no response :-0

"Volker Birk" <bumens@dingens.org> wrote in message
news:4353d824@news.uni-ulm.de...
> Doug Fox <dfox138-no-spam@hotmail.com> wrote:
>> I scanned a Windows Server 2003 by a NSS 5.0 with the latest update. It
>> reported that it has found two vulnerabilities, RPC.ypasswdd service
>> vulnerability and Samba buffer overflow.

>
> Hm... did you really have UNIX services on it? And why Samba? ;-)
> Perhaps LANGuard NSS is showing strange things here ;-)
>
>> According to CERT and Security Focus, they are more *IX based
>> vulnerabilities.

>
> Yes.
>
>> What cause NSS identify these two vulnerabilites? How can I resolve this
>> issue?

>
> Please ask GFI support.
>
> BTW: http://www.nessus.org/ http://www.gnessus.org/
> http://porz-wahn.berlios.de/
>
> Yours,
> VB.
> --
> "Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten
> Gebrauch machen - und zwar ausgiebig - natürlich nur in dem Rahmen, den
> Otto Schily mir noch zur Verfügung stellt."
> Wolfgang Clement am 10.10.05 als Noch-Superminister




Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Secure Wireless for non-public network, Windows Server 2003 R2, Linksys APs bjriffel@hotmail.com alt.internet.wireless 3 01-25-2007 04:04 PM
HPSBMA02149 SSRT050968 rev.1 - HP OpenView Operations, Remote Unauthorized Access and Denial of Service (DoS) Security Alert comp.security.misc 0 09-13-2006 05:40 PM
Configuring ALi USB card in Windows 2003 Mr. Land alt.comp.hardware 7 08-17-2005 01:40 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 07-31-2005 04:25 AM
Dlink DWL-G122 and Win server 2003 Lars alt.internet.wireless 0 07-20-2005 11:03 AM


All times are GMT. The time now is 08:13 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45