STIGUI
V-282736CAT II — Medium severitySV-282736r1201188_rule

TOSS 5 must restrict privilege elevation to authorized personnel.

Rule version TOSS-05-000328 · STIG v1 · 2026-08-20

Discussion

If the "sudoers" file is not configured correctly, any user defined on the system can initiate privileged actions on the target system.

Check

Verify TOSS 5 restricts privilege elevation to authorized personnel using the following command:

$ sudo sh -c 'grep -iw ALL /etc/sudoers /etc/sudoers.d/*'

If the either of the following entries are returned, this is a finding:

ALL ALL=(ALL) ALL ALL ALL=(ALL:ALL) ALL

Fix

Remove the following entries from the /etc/sudoers file or configuration file under /etc/sudoers.d/:

ALL ALL=(ALL) ALL ALL ALL=(ALL:ALL) ALL

Identifiers

Group ID
V-282736
Group title
SRG-OS-000480-GPOS-00227
Rule ID
SV-282736r1201188_rule
Check ID
C-87297r1201186_chk
Fix ID
F-87202r1201187_fix