Korean
<< Back
VID 17030
Severity 40
Port 515
Protocol TCP
Class RPC
Detailed Description The rlpdaemon service is running. Some versions of the rlpdaemon daemon allow remote attackers to gain unprivileged remote access.

* References:
http://www.securityfocus.com/bid/150
http://xforce.iss.net/xforce/xfdb/983
Recommendation Disable the 'rlpdaemon' rpc service if it's not needed, or use it after asking to the vendor whether not to be vulnerable.

Solaris 10, Solaris 11, Enterprise Linux 6.4, CentOS 6.4, Fedora 19:
1. you become a root, and then stop the service like the following:

# rpcinfo -d [program num] [version num]

2. comment its entry by putting a # at the beginning of the line with 'rlpdaemon' in /etc/rpc
3. # pkill -HUP (x)inetd
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)