Rule ID
SV-282611r1200813_rule
Version
V1R1
CCIs
Previous versions of software components that are not removed from the information system after updates have been installed may be exploited by adversaries.
Verify TOSS 5 removes all software components after updated versions have been installed using the following command: $ grep clean /etc/dnf/dnf.conf clean_requirements_on_remove=1 If "clean_requirements_on_remove" is not set to "1", this is a finding.
Configure TOSS 5 to remove all software components after updated versions have been installed. Edit the file /etc/dnf/dnf.conf by adding or editing the following line: clean_requirements_on_remove=1