Korean
<< Back
VID 17047
Severity 40
Port 111
Protocol TCP,UDP
Class RPC
Detailed Description The pcnfsd service is running. Some versions of the pcnfsd daemon allow remote attackers to gain unprivileged remote access.

* References:
http://www.cert.org/advisories/CA-1996-08.html
Recommendation If you do not use this service, then disable it as it may become a security threat in the future, if a vulnerability is discovered.
To disable 'pcnfsd' service,
first, you become a root, and then stop the service like the following:

# rpcinfo -d [program num] [version num]

And comment its entry by putting a # at the beginning of the line and revoke 'inetd' daemon.

Solaris 10, Solaris 11, Enterprise Linux 6.4, CentOS 6.4, Fedora 19:
1. you become a root, and then stop the service like the following:

# rpcinfo -d [program num] [version num]

2. comment its entry by putting a # at the beginning of the line with 'pcnfsd' in /etc/rpc
3. # pkill -HUP (x)inetd
Related URL CVE-1999-0078 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)