GEN005100 - The TFTP daemon must have mode 0755 or less permissive.

Information

If TFTP runs with the setuid or setgid bit set, it may be able to write to any file or directory and may seriously impair system integrity, confidentiality, and availability.

Solution

Change the mode of the TFTP daemon.

Procedure:
# chmod 0755 <in.tftpd binary>

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|I, CCI|CCI-000225, Group-ID|V-848, Rule-ID|SV-37564r1_rule, STIG-ID|GEN005100, Vuln-ID|V-848

Plugin: Unix

Control ID: cc191ef15aea9e79be1d5df12fe1bc507f3bbe9bb2043cfa9c2779da3c8fd944