1.3.2 Ensure sudo commands use pty

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

sudo can be configured to run only from a psuedo-pty Attackers can run a malicious program using sudo which would fork a background process that remains even when the main program has finished executing.

Solution

edit the file /etc/sudoers or a file in /etc/sudoers.d/ with visudo -f and add the following line: Defaults use_pty editing the sudo configuration incorrectly can cause sudo to stop functioning. visudo edits the sudoers file in a safe fashion, analogous to vipw(8). visudo locks the sudoers file against multiple simultaneous edits, provides basic sanity checks, and checks or parse errors. If the sudoers file is currently being edited you will receive a message to try again later.

See Also

https://workbench.cisecurity.org/files/2608