Issued:
2021-11-23
Updated:
2021-11-23

RHBA-2021:4781 - scap-security-guide bug fix and enhancement update


Synopsis

scap-security-guide bug fix and enhancement update

Type/Severity

Bug Fix Advisory None

Topic

An update for scap-security-guide is now available for Red Hat Enterprise Linux 7.

Description

The scap-security-guide project provides a guide for configuration of the system from the final system's security point of view. The guidance is specified in the Security Content Automation Protocol (SCAP) format and constitutes a catalog of practical hardening advice, linked to government requirements where applicable. The project bridges the gap between generalized policy requirements and specific implementation guidelines.

Bug Fix(es) and Enhancement(s):

  • xccdf_org.ssgproject.content_rule_package_MFEhiplsm_installed does not properly check for SELinux (BZ#1944297)

  • Insights does not use latest benchmark for CIS compliance (BZ#1953787)

  • Ansible remediations of 3 dconf_gnome related rules don't work properly (BZ#1976123)

  • Update rhel7 DISA STIG profile to v3r5 (BZ#1996678)

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

ProductVersionArch
Red Hat Enterprise Linux for Scientific Computing7x86_64
Red Hat Enterprise Linux for Power, little endian7ppc64le
Red Hat Enterprise Linux for Power, big endian7ppc64
Red Hat Enterprise Linux for IBM z Systems7s390x
Red Hat Enterprise Linux Workstation7x86_64
Red Hat Enterprise Linux Server7x86_64
Red Hat Enterprise Linux Server - Extended Life Cycle Support7x86_64
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian7ppc64le
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian7ppc64
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems)7s390x
Red Hat Enterprise Linux Desktop7x86_64

Updated Packages

  • scap-security-guide-doc-0.1.57-4.el7_9.noarch.rpm
  • scap-security-guide-0.1.57-4.el7_9.noarch.rpm
  • scap-security-guide-0.1.57-4.el7_9.src.rpm

Fixes

CVEs

(none)

References

(none)


Additional information