The Ubuntu operating system must require users to reauthenticate for privilege escalation or when changing roles.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-238208
UBTU-20-010014
SV-238208r1101674_rule
Medium
Description
Without reauthentication, users may access resources or perform tasks for which they do not have authorization.
When operating systems provide the capability to escalate a functional capability, it is critical the user reauthenticate.
Satisfies: SRG-OS-000373-GPOS-00156, SRG-OS-000373-GPOS-00157