[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-95015-4

Platform: cpe:/o:ubuntu:ubuntu_linux:20.04, cpe:/o:ubuntu:ubuntu_linux:22.04, cpe:/o:ubuntu:ubuntu_linux:23.04Date: (C)2020-10-15   (M)2023-09-01



The /etc/group file contains a list of all the valid groups defined in the system. The command below allows read/write access for root and read access for everyone else. Groups in Linux are defined by GIDs (group IDs). Just like with UIDs, the first 100 GIDs are usually reserved for system use. The GID of 0 corresponds to the root group and the GID of 100 usually represents the users group. GIDs are stored in the /etc/groups file Rationale: The /etc/group file needs to be protected from unauthorized changes by non-priliveged users, but needs to be readable as this information is used with many non-privileged programs. Fix: If the ownership of the /etc/group file are incorrect, run the following command to correct them: # /bin/chown root:root /etc/group


Parameter:

[GID of ROOT, UID of ROOT]


Technical Mechanism:

If the ownership of the /etc/group file are incorrect, run the following command to correct them: # /bin/chown root:root /etc/group

CCSS Severity:CCSS Metrics:
CCSS Score : 8.4Attack Vector: LOCAL
Exploit Score: 2.5Attack Complexity: LOW
Impact Score: 5.9Privileges Required: NONE
Severity: HIGHUser Interaction: NONE
Vector: AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:92351
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:65960
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:85094


OVAL    3
oval:org.secpod.oval:def:85094
oval:org.secpod.oval:def:92351
oval:org.secpod.oval:def:65960
XCCDF    6
xccdf_org.secpod_benchmark_SecPod_Ubuntu_23.04
xccdf_org.secpod_benchmark_SecPod_Ubuntu_22.04
xccdf_org.secpod_benchmark_SecPod_Ubuntu_20.04
xccdf_org.secpod_benchmark_general_Ubuntu_23.04
...

© SecPod Technologies