diff --git a/scap-security-guide-0.1.64-put_back_kernel_core_pattern_bin_false-PR_9384.patch b/scap-security-guide-0.1.64-put_back_kernel_core_pattern_bin_false-PR_9384.patch new file mode 100644 index 0000000..668459b --- /dev/null +++ b/scap-security-guide-0.1.64-put_back_kernel_core_pattern_bin_false-PR_9384.patch @@ -0,0 +1,48 @@ +From d76e93e697755e63d5c833747adef4af23c3256b Mon Sep 17 00:00:00 2001 +From: Vojtech Polasek +Date: Mon, 22 Aug 2022 13:51:28 +0200 +Subject: [PATCH 1/2] switch sysctl_kernel_core_pattern_empty_string for + sysctl_kernel_core_pattern + +--- + products/rhel9/profiles/ospp.profile | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/products/rhel9/profiles/ospp.profile b/products/rhel9/profiles/ospp.profile +index b1b18261d48..9fdd1354e38 100644 +--- a/products/rhel9/profiles/ospp.profile ++++ b/products/rhel9/profiles/ospp.profile +@@ -110,7 +110,7 @@ selections: + - package_gnutls-utils_installed + + ### Login +- - sysctl_kernel_core_pattern_empty_string ++ - sysctl_kernel_core_pattern + - sysctl_kernel_core_uses_pid + - service_systemd-coredump_disabled + - var_authselect_profile=minimal + +From d304b9f0037bfac6e20b1365e0d320f714ce09a3 Mon Sep 17 00:00:00 2001 +From: Vojtech Polasek +Date: Mon, 22 Aug 2022 13:51:55 +0200 +Subject: [PATCH 2/2] remove ospp reference from + sysctl_kernel_core_pattern_empty_string + +--- + .../sysctl_kernel_core_pattern_empty_string/rule.yml | 3 --- + 1 file changed, 3 deletions(-) + +diff --git a/linux_os/guide/system/permissions/restrictions/sysctl_kernel_core_pattern_empty_string/rule.yml b/linux_os/guide/system/permissions/restrictions/sysctl_kernel_core_pattern_empty_string/rule.yml +index 089bb1481aa..dc21f53c98c 100644 +--- a/linux_os/guide/system/permissions/restrictions/sysctl_kernel_core_pattern_empty_string/rule.yml ++++ b/linux_os/guide/system/permissions/restrictions/sysctl_kernel_core_pattern_empty_string/rule.yml +@@ -30,9 +30,6 @@ conflicts: + identifiers: + cce@rhel9: CCE-86005-6 + +-references: +- ospp: FMT_SMF_EXT.1 +- + ocil_clause: |- + the returned line does not have a value of ''. + diff --git a/scap-security-guide.spec b/scap-security-guide.spec index 8189a73..3117f72 100644 --- a/scap-security-guide.spec +++ b/scap-security-guide.spec @@ -6,7 +6,7 @@ Name: scap-security-guide Version: 0.1.63 -Release: 3%{?dist} +Release: 4%{?dist} Summary: Security guidance and baselines in SCAP formats License: BSD-3-Clause URL: https://github.com/ComplianceAsCode/content/ @@ -20,6 +20,7 @@ Patch3: scap-security-guide-0.1.64-fix_require_single_user_description-PR_9256. Patch4: scap-security-guide-0.1.64-authselect_minimal_for_ospp-PR_9298.patch Patch5: scap-security-guide-0.1.64-coredump_rules_for_ospp-PR_9285.patch Patch6: scap-security-guide-0.1.64-readd_rules-PR_9334.patch +Patch7: scap-security-guide-0.1.64-put_back_kernel_core_pattern_bin_false-PR_9384.patch BuildRequires: libxslt BuildRequires: expat @@ -106,6 +107,9 @@ rm %{buildroot}/%{_docdir}/%{name}/Contributors.md %endif %changelog +* Tue Aug 23 2022 Vojtech Polasek - 0.1.63-4 +- use sysctl_kernel_core_pattern rule again in RHEL9 OSPP (RHBZ#2081688) + * Thu Aug 11 2022 Matej Tyc - 0.1.63-3 - Readd rules to the benchmark to be compatible across all minor versions of RHEL9 (RHBZ#2117669)