Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22390 | GEN003245 | SV-26041r1_rule | ECLP-1 | Medium |
Description |
---|
File system extended ACLs provide access to files beyond what is allowed by the mode numbers of the files. Unauthorized modification of the at.allow file could result in Denial-of-Service to authorized "at" users and the granting of the ability to run "at" jobs to unauthorized users. |
STIG | Date |
---|---|
UNIX SRG | 2013-03-26 |
Check Text ( C-29221r1_chk ) |
---|
Determine if the at.allow file has an extended ACL. If it does, this is a finding. |
Fix Text (F-26242r1_fix) |
---|
Remove the extended ACL from the at.allow file. |