SV-216064r603268_rule
V-216064
SRG-OS-000480
SOL-11.1-020300
CAT II
10
Ensure all system startup files have mode 0755 or less permissive. Examine the rc files, and all files in the rc1.d (rc2.d, and so on) directories, and in the /etc/init.d and /lib/svc/method directories to ensure they are not world writable. If they are world writable, use the chmod command to correct the vulnerability and to research why.
Procedure:
# chmod go-w <startupfile>
Check run control script modes.
# ls -lL /etc/rc* /etc/init.d /lib/svc/method
If any run control script has a mode more permissive than 0755, this is a finding.
V-216064
False
SOL-11.1-020300
Check run control script modes.
# ls -lL /etc/rc* /etc/init.d /lib/svc/method
If any run control script has a mode more permissive than 0755, this is a finding.
M
4021