ALMA-09-045120 - AlmaLinux OS 9 must remove all software components after updated versions have been installed.

Information

Previous versions of software components that are not removed from the information system after updates have been installed may be exploited by some adversaries.

Solution

Configure AlmaLinux OS 9 to remove all software components after updated versions have been installed.

Run the following command to change the configuration of DNF:

$ dnf config-manager --setopt clean_requirements_on_remove=1 --save

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_CL_AlmaLinux_OS_9_V1R1_STIG.zip

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-2(6), CAT|II, CCI|CCI-002617, Rule-ID|SV-269453r1050336_rule, STIG-ID|ALMA-09-045120, Vuln-ID|V-269453

Plugin: Unix

Control ID: 97c473d464160daa36f5509c697a69529012597bfeab6466090702b6f3590914