4.4 Disable Prelink

Information

The prelinking feature changes binaries in an attempt to decrease their startup time.

*Rationale*

The prelinking feature can interfere with the operation of AIDE, because it changes
binaries. Prelinking can also increase the vulnerability of the system if a malicious user is
able to compromise a common library such as libc.

Solution

Run the command-# /usr/sbin/prelink -uato restore binaries to a normal, non-prelinked state, then remove prelink-# apt-get purge prelink

See Also

https://workbench.cisecurity.org/files/91

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4), 800-53|CM-7b.

Plugin: Unix

Control ID: ccf53e7642795f63859d396a93a30e9825808325fe60e57b563e600f5fd4ee15