ELBA-2023-0829

ELBA-2023-0829 - scap-security-guide bug fix and enhancement update

Type:BUG
Severity:NA
Release Date:2023-03-01

Description


[0.1.66-2.0.1]
- Update rules dealing with sshd_config to look into files added to the include
keyword [Orabug: 34893225]
- Update remediation in sebool_secure_mode_insmod which wasn't letting the system boot when
running anssi-high profile [Orabug: 34893225]
- Update OL stig profile rule selection remove sshd_disable_compression [Orabug: 35017186]
- Introduce new rules, sshd_use_approved_kex_ordered_stig, configure_bashrc_tmux,
configure_tmux_lock_keybinding [Orabug: 35017186]
- Update rules modifying pam files to handle /etc/pam.d/system-auth precedence over
other configuration files [Orabug: 35017186]
- Update version of stig profiles to V1R5 [Orabug: 35017186]

[0.1.66-2]
- Unselect rule logind_session_timeout (RHBZ#2168079)

[0.1.66-1]
- Rebase to a new upstream release 0.1.66 (RHBZ#2168079)
- Update RHEL8 STIG profile to V1R9 (RHBZ#2168075)
- Fix levels of CIS rules (RHBZ#2168072)
- Remove unused RHEL8 STIG control file (RHBZ#2168069)
- Fix handling of space in sudo_require_reauthentication (RHBZ#2168066)
- Add rule for audit immutable login uids (RHBZ#2168063)
- Fix remediation of audit watch rules (RHBZ#2168060)
- Align file_permissions_sshd_private_key with DISA Benchmark (RHBZ#2168057)
- Fix applicability of kerberos rules (RHBZ#2168054)
- Add support rainer scripts in rsyslog rules (RHBZ#2168050)




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) scap-security-guide-0.1.66-2.0.1.el8_7.src.rpmb343486a5a5749671adfa9bf3e52c171-
scap-security-guide-0.1.66-2.0.1.el8_7.noarch.rpm08ec3e30d182b63fb47a9cb56fbae99e-
scap-security-guide-doc-0.1.66-2.0.1.el8_7.noarch.rpm146e6c600a4a97ae26d47781a8604f1e-
Oracle Linux 8 (x86_64) scap-security-guide-0.1.66-2.0.1.el8_7.src.rpmb343486a5a5749671adfa9bf3e52c171-
scap-security-guide-0.1.66-2.0.1.el8_7.noarch.rpm08ec3e30d182b63fb47a9cb56fbae99e-
scap-security-guide-doc-0.1.66-2.0.1.el8_7.noarch.rpm146e6c600a4a97ae26d47781a8604f1e-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete