Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-30732

/etc/shadow has higher permissions than recommended

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Normal Normal
    • 4.16.0
    • 4.14.0, 4.14.z, 4.15.0, 4.15.z, 4.16
    • RHCOS

      Description of problem

      In QualysQuard 12.16.61-1, Vulnerability Signatures 2.5.993-2 it is noticed that file permission of /etc/shadow is higher than recommended.  Default permission of /etc/shadow is 000 where in openshift 4.14.z it's identified as 644.

      Version-Release number of selected component (if applicable):

          

      How reproducible:

          

      Steps to Reproduce:

      1. ls -l /etc/shadow
      2. rw-rr-. 1 root root 818 Mar 4 10:39 /etc/shadow

      Actual results:

          

      Expected results:

          

      Additional info:

          

            travier@redhat.com Timothée Ravier
            rhn-support-hsahoo Himanshu Sekhar Sahoo
            Aashish Radhakrishnan Aashish Radhakrishnan
            Votes:
            0 Vote for this issue
            Watchers:
            14 Start watching this issue

              Created:
              Updated: