5.3.1.1 Ensure latest version of pam is installed

Information

Linux Pluggable Authentication Modules (PAM) is a suite of libraries that allow a Linux system administrator to configure methods to authenticate users. It provides a flexible and centralized way to switch authentication methods for secured applications by using configuration files instead of changing application code

The libpam-runtime provides the runtime support for the PAM library

Older versions of the libpam-runtime package may not include the latest security and feature patches and updates.

Note: This Benchmark includes Recommendations that depend on newer libpam-runtime features. These Recommendation were written and tested against version 1.3.1-5ubuntu4.7 Latest available version of the package should be used

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Run the following command to install the latest version of libpam-runtime :

# apt install libpam-runtime

See Also

https://workbench.cisecurity.org/benchmarks/21369

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)

Plugin: Unix

Control ID: dcb95fd88aba6c0b442941998d0231880bbec975e7f773529c4c7e8a38a9e114