Synopsis
scap-security-guide bug fix update
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for scap-security-guide is now available for Red Hat Enterprise Linux 9.
Description
The scap-security-guide project provides a guide for configuration of the system from the final system's security point of view. The guidance is specified in the Security Content Automation Protocol (SCAP) format and constitutes a catalog of practical hardening advice, linked to government requirements where applicable. The project bridges the gap between generalized policy requirements and specific implementation guidelines.
Bug Fix(es):
- Update ANSSI BP-028 in RHEL9 to v2.0 (BZ#2228431)
- journald config parameters not set up correctly after oscap remediation (BZ#2228439)
- Rebase scap-security-guide in Red Hat Enterprise Linux 9.3 to latest upstream version (BZ#2228447)
- Rule "All Interactive Users Home Directories Must Exist" (`xccdf_org.ssgproject.content_rule_accounts_user_interactive_home_directory_exists`) applies to non-local users as well (BZ#2228462)
- Rules "Set Existing Passwords Maximum/Minimum Age" apply to non-local users as well (BZ#2228467)
- The /usr/share/xml/scap/ssg/content/ssg-rhel9-ds.xml file contains reference to an URL that no longer exist. (BZ#2228469)
Affected Products
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.4 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.2 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x
Fixes
-
BZ - 2228431
- Update ANSSI BP-028 in RHEL9 to v2.0 [rhel-9.2.0.z]
-
BZ - 2228439
- journald config parameters not set up correctly after oscap remediation [rhel-9.2.0.z]
-
BZ - 2228447
- Rebase scap-security-guide in Red Hat Enterprise Linux 9.3 to latest upstream version [rhel-9.2.0.z]
-
BZ - 2228462
- Rule "All Interactive Users Home Directories Must Exist" (`xccdf_org.ssgproject.content_rule_accounts_user_interactive_home_directory_exists`) applies to non-local users as well [rhel-9.2.0.z]
-
BZ - 2228467
- Rules "Set Existing Passwords Maximum/Minimum Age" apply to non-local users as well [rhel-9.2.0.z]
-
BZ - 2228469
- The /usr/share/xml/scap/ssg/content/ssg-rhel9-ds.xml file contains reference to an URL that no longer exist. [rhel-9.2.0.z]
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux for x86_64 9
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux Server - AUS 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux Server - AUS 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for IBM z Systems 9
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
s390x |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
s390x |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
s390x |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for Power, little endian 9
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
ppc64le |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
ppc64le |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
ppc64le |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for ARM 64 9
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
aarch64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
aarch64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
aarch64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
ppc64le |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
ppc64le |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
x86_64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
aarch64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
aarch64 |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
s390x |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2
SRPM |
scap-security-guide-0.1.69-2.el9_2.src.rpm
|
SHA-256: 04c2b14b8550eba7f0b227c4d19f4193b82f82a44251277345ab6c4bcc977daa |
s390x |
scap-security-guide-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: e8db31cdae86110d09ccaca4492fb2907e50e3897dff502e9bf6b6f5d90d5ba2 |
scap-security-guide-doc-0.1.69-2.el9_2.noarch.rpm
|
SHA-256: 3cbe6ce26f6745d93857e5a24615bde3c897abccb5353ee1c03eb1627b5a46b7 |