4.4 Disable Prelink

Information

The prelinking feature changes binaries in an attempt to decrease their startup time.

*Rationale*

The prelinking feature can interfere with the operation of AIDE, because it changes
binaries. Prelinking can also increase the vulnerability of the system if a malicious user is
able to compromise a common library such as libc.

Solution

Run the command-# /usr/sbin/prelink -uato restore binaries to a normal, non-prelinked state, then remove prelink-# apt-get purge prelink

See Also

https://workbench.cisecurity.org/files/91

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4), 800-53|CM-7b.

Plugin: Unix

Control ID: 35ccc02e0545a1295cb398ac61c5012e00f8850d6c395eca92b28eec5314434b