The OL 8 lastlog command must be owned by root.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-248706SRG-OS-000206-GPOS-00084OL08-00-020263SV-248706r958566_rule2026-02-132

Description

Unauthorized disclosure of the contents of the /var/log/lastlog file can reveal system data to attackers, thus compromising its confidentiality.

ℹ️ Check

Verify the "lastlog" command is owned by root with the following command: $ sudo ls -l /usr/bin/lastlog -rwxr-x---. 1 root root 21200 Nov 4 22:51 /usr/bin/lastlog If the "lastlog" command is not owned by root, this is a finding.

✔️ Fix

Configure the "lastlog" command for OL 8 to be owned by root with the following command: $ sudo chown root /usr/bin/lastlog