8.8 User Home Directories Should Be Mode 750 or More Restrictive

Information

Group or world-writable user home directories may enable malicious users to steal or modify other users' data or to gain another user's system privileges. Disabling 'read' and 'execute' access for users who are not members of the same group (the 'other' access category) allows for appropriate use of discretionary access control by each user.

See Also

https://workbench.cisecurity.org/files/633

Item Details

Audit Name: CIS Solaris 9 v1.3

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CSCv6|3.1

Plugin: Unix

Control ID: a6ea6a95dcda38414e78a6f338670bc5be6bc3d7888ab7cc238b682f788e7508