1.3 RHEL-09-211015

Information

RHEL 9 vendor packaged system security patches and updates must be installed and up to date.

GROUP ID: V-257778
RULE ID: SV-257778r991589

Installing software updates is a fundamental mitigation against the exploitation of publicly known vulnerabilities. If the most recent security patches and updates are not installed, unauthorized users may take advantage of weaknesses in the unpatched software. The lack of prompt attention to patching could result in a system compromise.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Install RHEL 9 security patches and updates at the organizationally defined frequency. If system updates are installed via a centralized repository that is configured on the system, all updates can be installed with the following command:

$ sudo dnf update

See Also

https://workbench.cisecurity.org/benchmarks/22008

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-257778r991589_rule, STIG-ID|RHEL-09-211015, Vuln-ID|V-257778

Plugin: Unix

Control ID: 51bae25e43400c917a46c3e2f8aaef44d91377f22dcfb65d8483eb4a9d9fbd98