RHEL 9 must be a vendor-supported release.

STIG ID: RHEL-09-211010  |  SRG: SRG-OS-000480-GPOS-00227 |  Severity: high (CAT I)  |  CCI: CCI-000366 |  Vulnerability Id: V-257777

Vulnerability Discussion

An operating system release is considered "supported" if the vendor continues to provide security patches for the product. With an unsupported release, it will not be possible to resolve security issues discovered in the system software.

End Of Life dates for Red Hat Linux 9 releases are as follows:
Current end of Full Support for Red Hat Linux 9 is 31 May 2027.
Current end of Maintenance Support for Red Hat Linux 9 is 31 May 3032.
Current end of Extended Life Cycle Support (ELS) for Red Hat Linux 9 is 31 May 2035.

Check

Verify the version or RHEL 9 is vendor supported with the following command:

$ cat /etc/redhat-release

Red Hat Enterprise Linux release 9.6 (Plow)

If the installed version of RHEL 9 is not supported, this is a finding.

Fix

Upgrade to a supported version of RHEL 9.