Package: sudo
Version: 1.9.16p2-3
Severity: minor

Dear Maintainer,

"lynis audit system" command can return:
  - Permissions for directory: /etc/sudoers.d               [ WARNING ]

https://unix.stackexchange.com/a/555786

Maybe the permission of this folder can be limitted per the StackExchange post
I have linked?

Inside the folder I have file custom-user-privilege-specification.conf which
also has unexpected permission, but that may be just my custom file. I have
modified its permission to be the same as other files in the directory:
sudo chmod 440 /etc/sudoers.d/custom-user-privilege-specification.conf

After also changing permission per the StackExchange answer, the command:
sudo lynis audit system --tests-from-group authentication
now sees the issue fixed.


-- System Information:
Debian Release: 13.2
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 
'proposed-updates'), (500, 'stable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 6.12.57+deb13-amd64 (SMP w/16 CPU threads; PREEMPT)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_OOT_MODULE, 
TAINT_UNSIGNED_MODULE
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_US:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages sudo depends on:
ii  init-system-helpers  1.69~deb13u1
ii  libapparmor1         4.1.0-1
ii  libaudit1            1:4.0.2-2+b2
ii  libc6                2.41-12
ii  libpam-modules       1.7.0-5
ii  libpam0g             1.7.0-5
ii  libselinux1          3.8.1-1
ii  libssl3t64           3.5.4-1~deb13u1
ii  zlib1g               1:1.3.dfsg+really1.3.1-1+b1

sudo recommends no packages.

sudo suggests no packages.

-- Configuration Files:
/etc/sudoers [Errno 13] Permission denied: '/etc/sudoers'
/etc/sudoers.d/README [Errno 13] Permission denied: '/etc/sudoers.d/README'

-- no debconf information

Reply via email to