GEN004420 - Files executed through a mail aliases file must have mode 0755 or less permissive.

Information

If a file executed through a mail aliases file has permissions greater than 0755, it can be modified by an unauthorized user and may contain malicious code or instructions potentially compromising the system.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Use the chmod command to change the access permissions for files executed from the alias file.

For example:
# chmod 0755 filename

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Group-ID|V-834, Rule-ID|SV-37494r2_rule, STIG-ID|GEN004420, Vuln-ID|V-834

Plugin: Unix

Control ID: 1664e98494d94af67fe610aeb9444b9c5ed3d52e0041cb7f33fe4541ba5a7db1