akfingerd 0.5 Multiple Vulnerabilities

Medium Nessus Plugin ID 11193


The remote service is vulnerable to several flaws.


The remote finger service appears to vulnerable to a remote attack which can disrupt the service of the finger daemon. This denial of service does not affect other services that may be running on the remote computer, only the finger service can be disrupted.

akfingerd version 0.5 or earlier is running on the remote host. This daemon has a history of security problems, make sure that you are running the latest version of akfingerd.

Versions 0.5 and earlier of akfingerd are vulnerable to a remote denial of service attack. They are also vulnerable to several local attacks.


akfingerd is no longer maintained. Disable the service and find an alternative finger daemon.

Plugin Details

Severity: Medium

ID: 11193

File Name: finger_akfingerd.nasl

Version: $Revision: 1.17 $

Type: remote

Family: Misc.

Published: 2002/12/12

Modified: 2014/05/26

Dependencies: 10068, 17975

Risk Information

Risk Factor: Medium


Base Score: 5

Temporal Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:H/RL:U/RC:ND

Vulnerability Information

Required KB Items: Settings/ParanoidReport

Exploit Available: true

Exploit Ease: No exploit is required

Reference Information

CVE: CVE-2002-2243, CVE-2002-2244, CVE-2002-2274

BID: 6323, 6324, 6325

OSVDB: 55529, 55530, 55531

CWE: 362