6.2.4 Ensure no legacy '+' entries exist in /etc/group

Information

These entries may provide an avenue for attackers to gain privileged access on the system.

Solution

Remove any legacy '+' entries from /etc/group if they exist.

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2, CSCv6|16.9

Plugin: Unix

Control ID: beefdb0341d5812cf825e5a442734d83449c82f4850f81b91d5a903941a4b52e