RHEL-09-212025 - RHEL 9 /boot/grub2/grub.cfg file must be group-owned by root.

Information

The 'root' group is a highly privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.

Solution

Change the group of the file /boot/grub2/grub.cfg to root by running the following command:

$ sudo chgrp root /boot/grub2/grub.cfg

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_9_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-257790r991589_rule, STIG-ID|RHEL-09-212025, Vuln-ID|V-257790

Plugin: Unix

Control ID: 71628457fef5abe9c756bba854c12175a69e6566e9129c079eeb83be1050f8c5