Amazon Linux 2023 must have the s-nail package installed.

STIG ID: AZLX-23-001095  |  SRG: SRG-OS-000363-GPOS-00150 |  Severity: medium (CAT II)  |  CCI: CCI-001744 |  Vulnerability Id: V-274031

Vulnerability Discussion

The "s-nail" package provides the mail command required to allow sending email notifications of unauthorized configuration changes to designated personnel.

Check

Verify Amazon Linux 2023 has the "s-nail" package is installed on the system with the following command:

$ dnf list --installed s-nail
Installed Packages
s-nail.x86_64 14.9.24-6.amzn2023 @amazonlinux

If the "s-nail" package is not installed, this is a finding.

Fix

Configure Amazon Linux 2023 to have the s-nail package installed with the following command:

$ sudo dnf install -y s-nail