trinity-devel@lists.pearsoncomputing.net

Message: previous - next
Month: May 2014

Re: [trinity-devel] ksmserver listens on all interfaces

From: "Dr. Nikolaus Klepp" <office@...>
Date: Tue, 20 May 2014 00:45:45 +0200
Am Montag, 19. Mai 2014 schrieb Darrell:
> > I just discovered that at least with Trinity 3.5.12.2, ksmserver is
> > listening on all interfaces by default. This could be a security
> > concern. Nmap detects it as the XFCE Session Manager.
> 
> Running nmap localhost on my R14 systems do not reveal any related open ports. What is the full syntax of the nmap command you ran?

$ nmap localhost  -p1-65535

[...]
46657/tcp open  unknown

$ netstat -altp
[...]
tcp        0      0 *:46657                 *:*                     LISTEN      3206/ksmserver [kin
[...]
tcp6       0      0 [::]:40456              [::]:*                  LISTEN      3206/ksmserver [kin

So it' there on debian, too. 

nik


-- 
Please do not email me anything that you are not comfortable also sharing with the NSA.