OSX remote root *more info*

From: dotslashat_private
Date: Wed Oct 17 2001 - 20:13:46 PDT

  • Next message: EnGarde Secure Linux: "[ESA-20011019-01] Two apache vulnerabilities"

    did a little more research ... it appears nidump makes a query to 
    portmap to look for netinfobind if either of these are not listening
    the use of a remote tag with nidump or nireport may fail. A vulnerable 
    machine should have the following open.
         program vers proto   port
         100000    2   tcp    111  portmapper
         100000    2   udp    111  portmapper
         200100001    1   udp    796  netinfobind
         200100001    1   tcp    799  netinfobind
    
    -KF
    



    This archive was generated by hypermail 2b30 : Fri Oct 19 2001 - 11:43:10 PDT