Korean
<< Back
VID 14145
Severity 30
Port 22
Protocol TCP
Class LSC
Detailed Description The host system's /etc/group file's permission or owner is unsafe. /etc/group is a file that contains groups information and users information who belonging to the groups.
If this file has write prmission to normal users, serious security problems can occur. So normal users need to be prohibited from accessing this file.

* Platforms Affected:
UNIX, Linux
Recommendation Reset permissions of the file lower than 644 as the following
chmod 644 /etc/group

if the owner of the file is not root, change the owner
chown root /etc/group
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)