ELBA-2022-6452

ELBA-2022-6452 - scap-security-guide bug fix and enhancement update

Type:BUG
Impact:NA
Release Date:2022-09-29

Description


[0.1.63.1.0.1]
- Update rules related to pam pwhistory remember module to allow both
requisite and required control values [Orabug: 34604895]
- Update accounts_password_pam_retry rule to align it with DISA requirements
OL08-00-020102, OL08-00-020103, and OL08-00-020104 [Orabug: 34604895]
- Create mount_option_home and use it in OL8 [Orabug: 34604895]
- Update rule no_empty_passwords to include the password-auth file in
OVAL check and rule wording [Orabug: 34604895]
- Introduce the rule accounts_passwords_pam_faillock_dir to cover
DISA requirements OL08-00-020016 and OL08-00-020017 [Orabug: 34604895]
- Introduce rule account_disable_inactivity_system_auth to cover
DISA requirement OL08-00-020260 [Orabug: 34604895]
- Add automation content to rule accounts_passwords_pam_faillock_audit and include
it in the OL8 stig profile [Orabug: 34604895]
- Add OVAL content to rule fapolicy_default_deny and include it on the
OL8 stig profile [Orabug: 34604895]
- Add automation content to rule rule account_password_selinux_faillock_dir
and include it on the OL8 stig profile [Orabug: 34604895]
- Create rule to cover DISA requirements OL08-00-020018 and OL08-00-020019 [Orabug: 34604895]
- Update sysctl template OVAL [Orabug: 34604895]
- Update accounts_password template OVAL [Orabug: 34604895]

[0.1.63-1]
- Update to the latest upstream release (RHBZ#2116347)
- Update RHEL8 STIG profile to V1R7 (RHBZ#2116408)
- Select grub2_disable_recovery in OSPP Profile (RHBZ#2117308)
- Use authselect minimal profile in OSPP Profile (RHBZ#2117306)
- Improve rules for CIS level1 partition options (RHBZ#2117510)




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) scap-security-guide-0.1.63-1.0.1.el8_6.src.rpmfdd1239a0909649431667ffa0167744f66e34fb8cae8b9bf374f7b41c1f3f5d0-ol8_aarch64_appstream
scap-security-guide-0.1.63-1.0.1.el8_6.noarch.rpmf602ec8d7a97492cd59ce43e9d92d74075be8b0d2ae2efe693b7bf1394418b7f-ol8_aarch64_appstream
scap-security-guide-doc-0.1.63-1.0.1.el8_6.noarch.rpmca20fd2a30cd2122afa993b1d0d7bad2e99fa698e88b2b2d47e3d59bf77f8e87-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) scap-security-guide-0.1.63-1.0.1.el8_6.src.rpmfdd1239a0909649431667ffa0167744f66e34fb8cae8b9bf374f7b41c1f3f5d0-ol8_x86_64_appstream
scap-security-guide-0.1.63-1.0.1.el8_6.noarch.rpmf602ec8d7a97492cd59ce43e9d92d74075be8b0d2ae2efe693b7bf1394418b7f-ol8_x86_64_appstream
scap-security-guide-doc-0.1.63-1.0.1.el8_6.noarch.rpmca20fd2a30cd2122afa993b1d0d7bad2e99fa698e88b2b2d47e3d59bf77f8e87-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete