STIGQter STIGQter: STIG Summary: IBM WebSphere Liberty Server Security Technical Implementation Guide Version: 2 Release: 4 Benchmark Date: 01 Apr 2026:

The WebSphere Liberty Server must protect software libraries from unauthorized access.

DISA Rule

SV-250331r960960_rule

Vulnerability Number

V-250331

Group Title

SRG-APP-000133-AS-000092

Rule Version

IBMW-LS-000340

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

As a privileged user with local file access to the /opt/IBM/WebSphere/Liberty/lib/ folder, verify all of the jar files in the lib folder have the correct file permissions of 664.

If the file permissions for all jar files in the lib folder are not set to 664, use the chmod command to change the file permissions.

chmod 664 *.jar

Check Contents

As a privileged user with local file access to the /opt/IBM/WebSphere/Liberty/lib/ folder, verify all of the jar files in the lib folder have the correct file permissions of 664.

If the file permissions for all jar files in the lib folder are not set to 664, this is a finding.

Vulnerability Number

V-250331

Documentable

False

Rule Version

IBMW-LS-000340

Severity Override Guidance

As a privileged user with local file access to the /opt/IBM/WebSphere/Liberty/lib/ folder, verify all of the jar files in the lib folder have the correct file permissions of 664.

If the file permissions for all jar files in the lib folder are not set to 664, this is a finding.

Check Content Reference

M

Target Key

5424