RHEL 10 must have the "policycoreutils-python-utils" package installed.

STIG ID: RHEL-10-200580  |  SRG: SRG-OS-000095-GPOS-00049 |  Severity: medium (CAT II)  |  CCI: CCI-000381 |  Vulnerability Id: V-280967

Vulnerability Discussion

The "policycoreutils-python-utils" package is required to operate and manage an SELinux environment and its policies. It provides utilities such as "semanage", "audit2allow", "audit2why", "chcat", and "sandbox".

Check

Verify RHEL 10 has the "policycoreutils-python-utils" service package installed with the following command:

$ sudo dnf list --installed policycoreutils-python-utils
Installed Packages
policycoreutils-python-utils.noarch 3.8-1.el10 @AppStream

If the "policycoreutils-python-utils" package is not installed, this is a finding.

Fix

Configure RHEL 10 to have the "policycoreutils-python-utils" service package installed with the following command:

$ sudo dnf -y install policycoreutils-python-utils