DG0009: DBMS software library permissions - '%ORACLE_HOME% permissions are configured correctly'

Information

The DBMS software libraries contain the executables used by the DBMS to operate. Unauthorized access to the libraries can result in malicious alteration or planting of operational executables. This may in turn jeopardize data stored in the DBMS and/or operation of the host system.

Solution

For Windows Systems:
Product-specific fix pending development. Use Generic Fix listed below:

Restrict access to the DBMS software libraries to the fewest accounts that clearly require access based on job function.

Document authorized access control and justify any access grants that do not fall under DBA, DBMS process, ownership, or SA accounts.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Oracle_Database_11g_V8R20_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6(7), 800-53|CM-6, CAT|II, CSCv6|3.1, Rule-ID|SV-24595r1_rule, STIG-ID|DG0009-ORACLE11, Vuln-ID|V-15608

Plugin: Windows

Control ID: f63514bab13dae946bca6a526e5cb10bed117bf44ba23f28f4fd6acf88de4230