STIGQter STIGQter: STIG Summary: Solaris 10 SPARC Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 22 Jan 2021:

The traceroute command owner must be root.

DISA Rule

SV-226925r603265_rule

Vulnerability Number

V-226925

Group Title

SRG-OS-000480

Rule Version

GEN003960

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Change the owner of the traceroute command to root.
Example procedure:
# chown root /usr/sbin/traceroute

Check Contents

# ls -lL /usr/sbin/traceroute
If the traceroute command is not owned by root, this is a finding.

Vulnerability Number

V-226925

Documentable

False

Rule Version

GEN003960

Severity Override Guidance

# ls -lL /usr/sbin/traceroute
If the traceroute command is not owned by root, this is a finding.

Check Content Reference

M

Target Key

4060

Comments