SV-227662r603266_rule
V-227662
SRG-OS-000480
GEN001580
CAT II
10
Ensure all system startup files have mode 0755 or less permissive. Examine the rc files, and all files in the rc1.d (rc2.d, and so on) directories, and in the /etc/init.d and /lib/svc/method directories to ensure they are not world-writable. If they are world-writable, use the chmod command to correct the vulnerability and to research why.
Procedure:
# chmod go-w <startupfile>
Check run control script modes.
# ls -lL /etc/rc* /etc/init.d /lib/svc/method
If any run control script has a mode more permissive than 0755, this is a finding.
V-227662
False
GEN001580
Check run control script modes.
# ls -lL /etc/rc* /etc/init.d /lib/svc/method
If any run control script has a mode more permissive than 0755, this is a finding.
M
4061