GEN001800 - All skeleton files (typically those in /etc/skel) must have mode 0644 or less permissive.

Information

If the skeleton files are not protected, unauthorized personnel could change user startup parameters and possibly jeopardize user files.

Solution

Change the mode of skeleton files with incorrect mode:
# chmod 0644 <skeleton file>

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6, 800-53|CM-5(6), CAT|II, CCI|CCI-000225, CCI|CCI-001499, Rule-ID|SV-218330r603259_rule, STIG-ID|GEN001800, STIG-Legacy|SV-63879, STIG-Legacy|V-788, Vuln-ID|V-218330

Plugin: Unix

Control ID: 40b583cc0a9b756d87b343f9afe673833e902a19c341d0cc90e329a247da0eb6