Vulnerability Discussion
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
Check
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
Check Text: Verify that a separate file system/partition has been created for non-privileged local interactive user home directories.
$ sudo grep /tmp /etc/fstab
/dev/mapper/ol-tmp /tmp xfs defaults,nodev,nosuid,noexec 0 0
If a separate entry for the file system/partition "/tmp" does not exist, this is a finding.
Fix
Migrate the "/tmp" directory onto a separate file system/partition.