Skip to content

The Oracle Linux operating system must be configured so that all files and directories contained in local interactive user home directories have a valid owner.

An XCCDF Rule

Description

<VulnDiscussion>Unowned files and directories may be unintentionally inherited if a user is assigned the same User Identifier "UID" as the UID of the un-owned files.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-221732r744079_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

Either remove all files and directories from the system that do not have a valid user, or assign a valid user to all unowned files and directories on OL 7 with the "chown" command:

Note: The example will be for the user smithj, who has a home directory of "/home/smithj".

$ sudo chown smithj /home/smithj/<file or directory>