Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-239531 | VROM-SL-000560 | SV-239531r662044_rule | Medium |
Description |
---|
If a file executed through a mail aliases file is not group-owned by root or a system group, it may be subject to unauthorized modification. Unauthorized modification of files executed through aliases may allow unauthorized users to attain root privileges. |
STIG | Date |
---|---|
VMware vRealize Operations Manager 6.x SLES Security Technical Implementation Guide | 2023-09-21 |
Check Text ( C-42764r662042_chk ) |
---|
Examine the contents of the "/etc/aliases" file: # more /etc/aliases Examine the aliases file for any directories or paths that may be utilized: # ls -lL Check the permissions for any paths referenced. If the group owner of any file is not "root", "bin", "sys", or "system", this is a finding. |
Fix Text (F-42723r662043_fix) |
---|
Change the group ownership of the file referenced from "/etc/mail/aliases": # chgrp root |