GEN001640 - Run control scripts must not execute world-writable programs or scripts.

Information

World-writable files could be modified accidentally or maliciously to compromise system integrity.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Remove the world-writable permission from programs or scripts executed by run control scripts.

Procedure:
# chmod o-w <program or script executed from run control script>

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|I, CCI|CCI-000225, Group-ID|V-910, Rule-ID|SV-38154r2_rule, STIG-ID|GEN001640, Vuln-ID|V-910

Plugin: Unix

Control ID: 4641ce1f41a35893d03336f1c2ecf5565ba3ba1837e52e511c423eaa0fc642cf