STIG Vul ID: V-230488 - requires that automatic debugging tools such as abrt be removed
search cancel

STIG Vul ID: V-230488 - requires that automatic debugging tools such as abrt be removed

book

Article ID: 262539

calendar_today

Updated On:

Products

DX NetOps

Issue/Introduction


STIG Vuln ID: V-230488 requires that automatic debugging tools such as abrt be removed, yet this is listed as a requirement for Spectrum.

Are these a requirement?

 

RHEL 8 must not have any automated bug reporting tools installed

Description
It is detrimental for operating systems to provide, or install by default, functionality exceeding requirements or mission objectives. These unnecessary capabilities
  or services are often overlooked and therefore may remain unsecured. They increase the risk to the platform by providing additional attack vectors. Operating
  systems are capable of providing a wide variety of functions and services.

Environment

Release : 21.2, 22.2

Resolution

 

The abrt package is not needed on a OneClick system. The SpectroSERVER was tested with abrt removed and a core was still created
   with the necessary
information. 

It should be safe to also remove it from the SpectroSERVER, however, if a failure occurs make sure a core file is generated at that time.

   How to enable core file dumps when an application crashes or segmentation faults
    https://access.redhat.com/solutions/4896

Additional Information



RHEL 8 must not have any automated bug reporting tools installed.
https://www.stigviewer.com/stig/red_hat_enterprise_linux_8/2022-12-06/finding/V-230488