Korean
<< Back
VID 17053
Severity 20
Port 111
Protocol TCP,UDP
Class RPC
Detailed Description The yppasswdd service is running. yppasswdd is a daemon that changes (or installs) the network password associated with the user's username (your own name by default) in the Network Information Service (NIS) database.
Recommendation If you do not use this service, then disable it as it may become a security threat in the future, if a vulnerability is discovered.
To disable 'yppasswdd' service,
first, you become a root, and then stop the service like the following:

# rpcinfo -d [program num] [version num]

And comment its entry by putting a # at the beginning of the line and revoke 'inetd' daemon.

Solaris 10, Solaris 11, Enterprise Linux 6.4, CentOS 6.4, Fedora 19:
1. you become a root, and then stop the service like the following:

# rpcinfo -d [program num] [version num]

2. comment its entry by putting a # at the beginning of the line 'yppasswdd' in /etc/rpc
3. # pkill -HUP (x)inetd
Related URL (CVE)
Related URL (SecurityFocus)
Related URL 263 (ISS)