1.15 RHEL-09-212030

Information

RHEL 9 /boot/grub2/grub.cfg file must be owned by root.

GROUP ID: V-257791
RULE ID: SV-257791r991589

The " /boot/grub2/grub.cfg" file stores sensitive system configuration. Protection of this file is critical for system security.

Solution

Change the owner of the file /boot/grub2/grub.cfg to root by running the following command:

$ sudo chown root /boot/grub2/grub.cfg

See Also

https://workbench.cisecurity.org/benchmarks/22008