27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Description: The remote host is running BIND : %L<br />

Solution: N/A<br />

CVE Not available<br />

ISC BIND < 8.1.2 Inverse-Query Remote Overflow<br />

<strong>PVS</strong> ID: 1015 FAMILY: DNS Servers RISK: HIGH NESSUS ID:10728<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow\n\nThe remote BIND<br />

server, according to its version number, is vulnerable to an inverse query overflow. An<br />

attacker may use this flaw to gain a root shell on this host.<br />

Solution: Upgrade to BIND 8.1.2 or newer<br />

DNS Server Detection<br />

CVE-1999-0009<br />

<strong>PVS</strong> ID: 1016 FAMILY: DNS Servers RISK: LOW NESSUS ID:11002<br />

Description: An authoritative DNS server is running on this port.<br />

Solution: If you do not use it, disable it.<br />

CVE Not available<br />

DNS Server Zone Transfer Allowed<br />

<strong>PVS</strong> ID: 1017 FAMILY: DNS Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10595<br />

Description: Synopsis :\n\nThe remote DNS server allows zone transfers\n\nA succesful zone transfer<br />

was just observed. An attacker may use the zone information to discover sensitive<br />

information about hosts on your network.<br />

Solution: Verify that you only allow zone transfers to authorized hosts.<br />

CVE-1999-0532<br />

RPC Status (rpc.statd) Service In Use<br />

<strong>PVS</strong> ID: 1018 FAMILY: RPC RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the RPC status service (rpc.statd).<br />

Solution: N/A<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 263

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!