Issued:
2021-11-02
Updated:
2021-11-02

RHBA-2021:4098 - scap-security-guide bug fix and enhancement update


Synopsis

scap-security-guide bug fix and enhancement update

Type/Severity

Bug Fix Advisory None

Topic

An update for scap-security-guide is now available for Red Hat Enterprise Linux 8.

Description

The scap-security-guide project provides a guide for configuration of the system from the final system's security point of view. The guidance is specified in the Security Content Automation Protocol (SCAP) format and constitutes a catalog of practical hardening advice, linked to government requirements where applicable. The project bridges the gap between generalized policy requirements and specific implementation guidelines.

Bug Fix(es) and Enhancement(s):

  • Update RHEL 8 STIG profile to V1R3 (BZ#1997634)

  • CIS compliance profile does not represent structure of the policy (BZ#2005427)

  • Add ANSSI-BP-028 High level profile (BZ#2005429)

  • Add STIG variant for GUI installations (BZ#2005431)

  • [RFE] Add support for ACSC ISM 'Official' profile (BZ#2005891)

  • Rule package_rear_installed should not be applicable on s390x (BZ#2013553)

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

ProductVersionArch
Red Hat Enterprise Linux for x86_648x86_64
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions8.8x86_64
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions8.6x86_64
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions8.4x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support8.8x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support8.6x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support8.4x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension8.8x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension8.6x86_64
Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension8.4x86_64
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle8.10x86_64
Red Hat Enterprise Linux for Power, little endian8ppc64le
Red Hat Enterprise Linux for Power, little endian - Extended Update Support8.8ppc64le
Red Hat Enterprise Linux for Power, little endian - Extended Update Support8.6ppc64le
Red Hat Enterprise Linux for Power, little endian - Extended Update Support8.4ppc64le
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle8.10ppc64le
Red Hat Enterprise Linux for IBM z Systems8s390x
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support8.8s390x
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support8.6s390x
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support8.4s390x
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle8.10s390x
Red Hat Enterprise Linux for ARM 648aarch64
Red Hat Enterprise Linux for ARM 64 - Extended Update Support8.8aarch64
Red Hat Enterprise Linux for ARM 64 - Extended Update Support8.6aarch64
Red Hat Enterprise Linux for ARM 64 - Extended Update Support8.4aarch64
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle8.10aarch64
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions8.8ppc64le
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions8.6ppc64le
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions8.4ppc64le
Red Hat Enterprise Linux Server - TUS8.8x86_64
Red Hat Enterprise Linux Server - TUS8.6x86_64
Red Hat Enterprise Linux Server - TUS8.4x86_64
Red Hat Enterprise Linux Server - AUS8.6x86_64
Red Hat Enterprise Linux Server - AUS8.4x86_64

Updated Packages

  • scap-security-guide-doc-0.1.57-3.el8_4.noarch.rpm
  • scap-security-guide-0.1.57-3.el8_4.noarch.rpm
  • scap-security-guide-0.1.57-3.el8_4.src.rpm

Fixes

CVEs

(none)

References


Additional information