Korean
<< Back
VID 11002
Severity 20
Port 11
Protocol TCP
Class Info
Detailed Description The "systat" service provides useful informations to crackers, such as which processes are running, who is running them, and so on... It is highly recommanded that you get rid of this service.

* References:
http://www.iss.net/security_center/static/2991.php
Recommendation Comment out the "systat" line in /etc/inetd.conf and revoke 'inetd' daemon.

*Solaris 10, Solaris 11:
# svcadm disable svc:/network/systat/tcp:default

*Enterprise Linux 6.4, CentOS 6.4, Fedora 19:
Open /etc/xinetd.d/systat and set disable=yes
and then restart xinetd
OR
# service systat stop
Related URL CVE-1999-0637 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)