DG0101-ORACLE11 - OS accounts used to execute external procedures should be assigned minimum privileges.

Information

External applications spawned by the DBMS process may be executed under OS accounts assigned unnecessary privileges that can lead to unauthorized access to OS resources. Unauthorized access to OS resources can lead to the compromise of the OS, the DBMS, and any other service provided by the host platform.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure OS accounts used by DBMS external procedures to have the minimum privileges necessary for operation.

Document DBMS external procedures and OS privileges need to execute the procedures in the System Security Plan.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Database_11g_Y21M10_STIG.zip

Item Details

References: CAT|II, Rule-ID|SV-25054r1_rule, STIG-ID|DG0101-ORACLE11, Vuln-ID|V-15620

Plugin: Unix

Control ID: 0db12e641f73264e83f3a4ce0d5be302202ba0436beed0424ea0e6f2c6e78296