OL6-00-000337 - All public directories must be owned by a system account.

Information

Allowing a user account to own a world-writable directory is undesirable because it allows the owner of that directory to remove or replace any files that may be placed in the directory by other users.

Solution

All directories in local partitions which are world-writable should be owned by root or another system account.

If any world-writable directories are not owned by a system account, this should be investigated.

Following this, the files should be deleted or assigned to an appropriate group.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_6_V2R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-209039r793760_rule, STIG-ID|OL6-00-000337, STIG-Legacy|SV-65633, STIG-Legacy|V-51423, Vuln-ID|V-209039

Plugin: Unix

Control ID: 95ebbe44563c0be43ebfbba57e200c781ae5ba565da7d343a1b2873285c6a6e1