1.1.1.6 Ensure mounting of squashfs filesystems is disabled - modprobe

Information

The squashfs filesystem type is a compressed read-only Linux filesystem embedded in small footprint systems (similar to cramfs ). A squashfs image can be used without having to first decompress the image.

Solution

Edit or create the file /etc/modprobe.d/CIS.conf and add the following line:
install squashfs /bin/true

Run the following command to unload the squashfs module:
# rmmod squashfs

See Also

https://workbench.cisecurity.org/files/1856

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv6|13

Plugin: Unix

Control ID: 7bb0962c7ce57e5f0b8fc309c4da445cf5bd80a7b2a582aabd797efd3a429190