[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

242976

 
 

909

 
 

192814

 
 

277

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-90855-8

Platform: rhel7,centos7Date: (C)2017-06-29   (M)2022-10-10



Ensure SELinux Not Disabled in /etc/grub.conf SELinux can be disabled at boot time by an argument in '/etc/grub.conf'. Remove any instances of 'selinux=0' from the kernel arguments in that file to prevent SELinux from being disabled at boot.


Parameter:


Technical Mechanism:

Disabling a major host protection feature, such as SELinux, at boot time prevents it from confining system services at boot time. Further, it increases the chances that it will remain off during system operation. Fix: No Remediation Info

CCSS Severity:CCSS Metrics:
CCSS Score : Attack Vector:
Exploit Score: Attack Complexity:
Impact Score: Privileges Required:
Severity: User Interaction:
Vector: Scope:
 Confidentiality:
 Integrity:
 Availability:
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:30528
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:31251


OVAL    2
oval:org.secpod.oval:def:30528
oval:org.secpod.oval:def:31251

© SecPod Technologies