GEN004620 - The Sendmail server must have the debug feature disabled.

Information

Debug mode is a feature present in older versions of Sendmail which, if not disabled, may allow an attacker to gain access to a system through the Sendmail service.

Solution

Obtain and install a more recent version of Sendmail, which does not implement the DEBUG feature.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|I, CCI|CCI-000366, Rule-ID|SV-4690r2_rule, STIG-ID|GEN004620, Vuln-ID|V-4690

Plugin: Unix

Control ID: 538ce9e376397d3948e78716a72760db29c15df86c3aa2311b2cfda222017352