Netstat Inet service

Risk Level: Low risk vulnerability  Low

Check or Attack Name: netstat

Platforms: Unix, Solaris: 2.5.1
Description:

Some systems are configured to run the netstat program as a network service. This allows remote users to view the networking status, including running services and connected clients, of the machine by connecting to the netstat port, generally TCP port 15.

Remedy:

Disable the daemon:

  1. Edit the /etc/inetd.conf (or equivalent) file.
  2. Locate the line that controls netstat.
  3. Type a # at the beginning of the line to comment out netstat.
  4. Restart inetd.
References:

X-Force Logo
Know Your Risks