5.1.4 Check Library folder for world writable files

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Folders in /Library should not be world writable. The audit check excludes the /Library/Caches folder where the sticky bit is set.

Solution

Change permissions so that 'Others' can only execute. (Example Below)
sudo chmod -R o-w /Bad/Directory

See Also

https://benchmarks.cisecurity.org/tools2/osx/CIS_Apple_OSX_10.11_Benchmark_v1.0.0.pdf

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6

Plugin: Unix

Control ID: 2cd747b24896ecfbe2a908f632a79e58decbbbf90b1e00ead6f016e429805acf