Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-4364 | GEN003400 | SV-45670r1_rule | Medium |
Description |
---|
If the "at" directory has a mode more permissive than 0755, unauthorized users could be allowed to view or to edit files containing sensitive information within the "at" directory. Unauthorized modifications could result in Denial of Service to authorized "at" jobs. |
STIG | Date |
---|---|
SUSE Linux Enterprise Server v11 for System z | 2016-12-20 |
Check Text ( C-43036r1_chk ) |
---|
Check the mode of the "at" directory. Procedure: # ls -ld /var/spool/at /var/spool/atjobs If the directory mode is more permissive than 0755, this is a finding. |
Fix Text (F-39068r1_fix) |
---|
Change the mode of the "at" directory to 0755. Procedure: # chmod 0755 |