2.3.3 Ensure talk client is not installed

Information

The talk software makes it possible for users to send and receive messages across systems through a terminal session. The talk client, which allows initialization of talk sessions, is installed by default.
Rationale:
The software presents a security risk as it uses unencrypted protocols for communication.

Solution

Run the following command to uninstall talk:
apt-get remove talk

See Also

https://workbench.cisecurity.org/files/2429

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4), CSCv6|2, CSCv7|2.6

Plugin: Unix

Control ID: 763dab6b31c6ea2eb0cad9d24b4626d302e33f1a12e77c404af7b55954d3e5ef