Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-4364 | GEN003400 | SV-38907r1_rule | ECLP-1 | Medium |
Description |
---|
If the at directory has a mode more permissive than 0755, unauthorized users could be allowed to view or to edit files containing sensitive information within the at directory. Unauthorized modifications could result in Denial of Service to authorized at jobs. |
STIG | Date |
---|---|
AIX 6.1 SECURITY TECHNICAL IMPLEMENTATION GUIDE | 2017-12-08 |
Check Text ( C-37215r1_chk ) |
---|
Check the mode of the at directory. # ls -lLd /var/spool/cron/atjobs If the directory mode is more permissive than 0755, this is a finding. |
Fix Text (F-4275r2_fix) |
---|
Change the mode of the "at" directory to 0755. Procedure: # chmod 0755 < at directory > |