Check: GEN000100
SUSE Linux Enterprise Server v11 for System z STIG:
GEN000100
(in versions v1 r12 through v1 r9)
Title
The operating system must be a supported release. (Cat I impact)
Discussion
An operating system release is considered "supported" if the vendor continues to provide security patches for the product. With an unsupported release, it will not be possible to resolve security issues discovered in the system software.
Check Content
Check the version of the operating system. Example: # cat /etc/SuSE-release - OR – (if more detail is required) # sam --no-rpm-verify-md5 --spreport Vendor End-of-Support Information: SUSE Linux Enterprise Server 9: 31 Aug 2011 SUSE Linux Enterprise Server 10: 31 Jul 2013 SUSE Linux Enterprise Server 11: 31 Mar 2016 Check with the vendor for additional information. If the version installed is not supported, this is a finding.
Fix Text
Upgrade to a supported version of the operating system.
Additional Identifiers
Rule ID: SV-44761r1_rule
Vulnerability ID: V-11940
Group Title: GEN000100
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001230 |
The organization incorporates flaw remediation into the organizational configuration management process. |
Controls
Number | Title |
---|---|
SI-2 |
Flaw Remediation |