GEN004620 - The Sendmail server must have the debug feature disabled.

Information

Debug mode is a feature present in older versions of Sendmail which, if not disabled, may allow an attacker to gain access to a system through the Sendmail service.

Solution

Obtain and install a more recent version of Sendmail, which does not implement the DEBUG feature.

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|I, CCI|CCI-000366, Group-ID|V-4690, Rule-ID|SV-4690r2_rule, STIG-ID|GEN004620, Vuln-ID|V-4690

Plugin: Unix

Control ID: 3efc300a5e3a015d312ae81be24d1a42fc9e55b77fea4d45dfa2c10d32dfc809