Check: GEN000950
SOLARIS 9 SPARC STIG:
GEN000950
(in version v1 r12)
Title
The root account's list of preloaded libraries must be empty. (Cat II impact)
Discussion
The library preload list environment variable contains a list of libraries for the dynamic linker to load before loading the libraries required by the binary. If this list contains paths to libraries relative to the current working directory, unintended libraries may be preloaded. This variable is formatted as a space-separated list of libraries. Paths starting with (/) are absolute paths.
Check Content
Fix Text
Edit the root user initialization files and remove any definition of LD_PRELOAD.
Additional Identifiers
Rule ID: SV-26357r1_rule
Vulnerability ID: V-22311
Group Title: GEN000950
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
CM-6 |
Configuration Settings |