1.276 RHEL-10-600520

Information

RHEL 10 must restrict privilege elevation to authorized personnel.

GROUP ID: V-281207RULE ID: SV-281207r1166573

If the "sudoers" file is not configured correctly, any user defined on the system can initiate privileged actions on the target system.

Solution

Configure RHEL 10 to restrict privilege elevation to authorized personnel.

Remove the following entries from the "/etc/sudoers" file or configuration file under "/etc/sudoers.d/":

ALL ALL=(ALL) ALLALL ALL=(ALL:ALL) ALL

See Also

https://workbench.cisecurity.org/benchmarks/26403