ALMA-09-045120 - AlmaLinux OS 9 must remove all software components after updated versions have been installed.

Information

Previous versions of software components that are not removed from the information system after updates have been installed may be exploited by some adversaries.

Solution

Configure AlmaLinux OS 9 to remove all software components after updated versions have been installed.

Run the following command to change the configuration of DNF:

$ dnf config-manager --setopt clean_requirements_on_remove=1 --save

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_CL_AlmaLinux_OS_9_V1R6_STIG.zip