2.3.3 Ensure talk client is not installed

Information

The talk software makes it possible for users to send and receive messages across systems through a terminal session. The talk client, which allows initialization of talk sessions, is installed by default.
Rationale:
The software presents a security risk as it uses unencrypted protocols for communication.

Solution

Run the following command to uninstall talk:
apt-get remove talk

See Also

https://workbench.cisecurity.org/files/2242

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv7|2.6

Plugin: Unix

Control ID: 84b819b41bfa39e02eb82205f859dab2101f632c05bbeaff47997f3fd26a55b3