[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-95656-5

Platform: cpe:/o:debian:debian_linux:11.x, cpe:/o:ubuntu:ubuntu_linux:16.04, cpe:/o:ubuntu:ubuntu_linux:18.04, cpe:/o:ubuntu:ubuntu_linux:20.04, cpe:/o:ubuntu:ubuntu_linux:22.04, cpe:/o:ubuntu:ubuntu_linux:23.04Date: (C)2021-03-08   (M)2023-09-01



Any account with UID 0 has superuser privileges on the system. Rationale: This access must be limited to only the default root account and only from the system console. Administrative access must be through an unprivileged account using an approved mechanism as noted in Item 5.6 Ensure access to the su command is restricted. Fix: Remove any users other than root with UID 0 or assign new UID if appropriate


Parameter:

[yes/no]


Technical Mechanism:

Remove any users other than root with UID 0 or assign new UID if appropriate

CCSS Severity:CCSS Metrics:
CCSS Score : 7.8Attack Vector: LOCAL
Exploit Score: 1.8Attack Complexity: LOW
Impact Score: 5.9Privileges Required: LOW
Severity: HIGHUser Interaction: NONE
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:92158
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:85233
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:87376
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:68709
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:70789
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:70699


OVAL    6
oval:org.secpod.oval:def:70699
oval:org.secpod.oval:def:68709
oval:org.secpod.oval:def:87376
oval:org.secpod.oval:def:70789
...
XCCDF    10
xccdf_org.secpod_benchmark_general_Ubuntu_16_04
xccdf_org.secpod_benchmark_general_Ubuntu_18_04
xccdf_org.secpod_benchmark_NIST_800_53_r5_Debain_11
xccdf_org.secpod_benchmark_NIST_800_53_r5_Debian_11
...

© SecPod Technologies