1.2.2 Ensure the latest software package is installed

Information

As new security vulnerabilities are discovered, the corresponding fixes are implemented by your NGINX software package provider. Installing the latest software version ensures these fixes are available on your system.

Up-to-date software provides the best possible protection against exploitation of security vulnerabilities, such as the execution of malicious code.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

To install the latest NGINX package, run the following command (example):

Redhat:

dnf update nginx -y

Impact:

Updating the NGINX package requires a service reload or restart to apply the changes. This may cause a brief interruption or configuration errors if the new version deprecates existing syntax.

See Also

https://workbench.cisecurity.org/benchmarks/18528

Item Details

Category: RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|RA-5, 800-53|SI-2, 800-53|SI-2(2), CSCv7|3.4, CSCv7|3.5

Plugin: Unix

Control ID: 1061e853be701045e0dd430f8ba062d74328d8a07c5d20be682ec4c00a1e635b