GEN001640 - Run control scripts must not execute world-writable programs or scripts.

Information

World-writable files could be modified accidentally or maliciously to compromise system integrity.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Remove the world-writable permission from programs or scripts executed by run control scripts.
Procedure:
# chmod o-w <program or script executed from run control script>

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|I, CCI|CCI-000225, Rule-ID|SV-910r2_rule, STIG-ID|GEN001640, Vuln-ID|V-910

Plugin: Unix

Control ID: 275b2ce7925adad8c5b68e135af5d6edd27d63a5840e6d31fa1d5fc4adf00cba