Check: SLES-15-010000
SUSE Linux Enterprise Server 15 STIG:
SLES-15-010000
(in versions v2 r6 through v1 r1)
Title
The SUSE operating system must be a vendor-supported release. (Cat I impact)
Discussion
A SUSE operating system release is considered "supported" if the vendor continues to provide security patches for the product. With an unsupported release, it will not be possible to resolve security issues discovered in the system software. Release Released General Support Long Term Support 15.1 24 Jun 2019 31 Jan 2021 31 Jan 2024 15.2 21 Jul 2020 31 Dec 2021 31 Dec 2024 15.3 22 Jun 2021 31 Dec 2022 31 Dec 2025 15.4 21 Jun 2022 31 Dec 2023 31 Dec 2026 15.5 20 Jun 2023 31 Dec 2024 31 Dec 2027 15.6 26 Jun 2024 31 Dec 2025 31 Dec 2028 15.7 17 Jun 2025 31 Jul 2031 31 Jul 2034
Check Content
Verify the SUSE operating system is a vendor-supported release. Use the following command to verify the SUSE operating system is a vendor-supported release: > cat /etc/os-release NAME="SLES" VERSION="15" Or any SUSE Linux Enterprise 15 Service Pack follow up release. NAME="SLES" VERSION="15-SPx" Current End of Life for SLES 15 General Support is 31 Jul 2028 and Long-term Support is until 31 Jul 2031. If the release is not supported by the vendor, this is a finding.
Fix Text
Upgrade the SUSE operating system to a version supported by the vendor. If the system is not registered with the SUSE Customer Center, register the system against the correct subscription. If the system requires Long-Term Service Pack Support (LTSS), obtain the correct LTSS subscription for the system.
Additional Identifiers
Rule ID: SV-234800r1155796_rule
Vulnerability ID: V-234800
Group Title: SRG-OS-000480-GPOS-00227
Expert Comments
CCIs
| Number | Definition |
|---|---|
| CCI-001230 |
Incorporate flaw remediation into the organizational configuration management process. |
Controls
| Number | Title |
|---|---|
| SI-2 |
Flaw Remediation |