
* Docs are now ordered by STIG ID number to make them easier to browse. * Deployer notes are better organized. * Script + CSV added for automated documentation generation. Implements: blueprint security-hardening Change-Id: Ib87bec701eddf1601574f4e027f301c775e5e1cd
16 lines
543 B
ReStructuredText
16 lines
543 B
ReStructuredText
V-57569: The noexec option must be added to the /tmp partition.
|
|
---------------------------------------------------------------
|
|
|
|
Allowing users to execute binaries from world-writable directories such as
|
|
"/tmp" should never be necessary in normal operation and can expose the system
|
|
to potential compromise.
|
|
|
|
Details: `V-57569 in STIG Viewer`_.
|
|
|
|
.. _V-57569 in STIG Viewer: https://www.stigviewer.com/stig/red_hat_enterprise_linux_6/2015-05-26/finding/V-57569
|
|
|
|
Notes for deployers
|
|
~~~~~~~~~~~~~~~~~~~
|
|
|
|
.. include:: developer-notes/V-57569.rst
|