4.4 Disable Prelink

Information

The prelinking feature changes binaries in an attempt to decrease their startup time. The prelinking feature can interfere with the operation of AIDE, because it changes binaries. Prelinking can also increase the vulnerability of the system if a malicious user is able to compromise a common library such as libc.

Solution

Run the command- # /usr/sbin/prelink -ua to restore binaries to a normal, non-prelinked state, then remove prelink- # apt-get purge prelink

See Also

https://workbench.cisecurity.org/files/85

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4), 800-53|CM-7b.

Plugin: Unix

Control ID: 2848a6d24419bc4bf48ccc13b7e9fa0b6d1dd1a70575353c0d8c01632b024298