1.14 RHEL-09-212025

Information

RHEL 9 /boot/grub2/grub.cfg file must be group-owned by root.

GROUP ID: V-257790
RULE ID: SV-257790r991589

The "root" group is a highly privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.

Solution

Change the group of the file /boot/grub2/grub.cfg to root by running the following command:

$ sudo chgrp root /boot/grub2/grub.cfg

See Also

https://workbench.cisecurity.org/benchmarks/22008

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-257790r991589_rule, STIG-ID|RHEL-09-212025, Vuln-ID|V-257790

Plugin: Unix

Control ID: f0d04e42251b12641b5e655990911a7ef67a3660e5406a4f4c997b083732e0bf