[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Ensure permissions on bootloader config are not overridden

ID: oval:org.secpod.oval:def:96541Date: (C)2024-01-09   (M)2024-01-09
Class: COMPLIANCEFamily: unix




The permissions on /boot/grub/grub.cfg are changed to 444 when grub.cfg is updated by the update-grub command Rationale: Setting the permissions to read and write for root only prevents non-root users from seeing the boot parameters or changing them. Non-root users who read the boot parameters may be able to identify weaknesses in security upon boot and be able to exploit them.

Platform:
Ubuntu 18.04
Reference:
CCE-95748-0
CPE    1
cpe:/o:ubuntu:ubuntu_linux:18.04
XCCDF    1
xccdf_org.secpod_benchmark_general_Ubuntu_18_04

© SecPod Technologies