nerdexam
CompTIA

XK0-006 · Question #127

The security manager at a company notifies a systems administrator of open vulnerabilities on the Linux system. The administrator receives the following information while logged in to the server…

The correct answer is A. The server has not been updated in a year and should be patched. The package management history shows that the last system update occurred over a year ago, which strongly indicates that security patches and vulnerability fixes have not been applied, leaving the system exposed to known vulnerabilities.

Security Best Practices

Question

The security manager at a company notifies a systems administrator of open vulnerabilities on the Linux system. The administrator receives the following information while logged in to the server:

Which of the following is the most likely security concern?

Exhibit

XK0-006 question #127 exhibit

Options

  • AThe server has not been updated in a year and should be patched.
  • BThe system has httpd installed and needs to be removed.
  • CThe system is configured to use UTC time and should be set to EDT.
  • DThe system has SELinux set to enforcing and needs to be disabled.

How the community answered

(35 responses)
  • A
    86% (30)
  • B
    9% (3)
  • C
    3% (1)
  • D
    3% (1)

Explanation

The package management history shows that the last system update occurred over a year ago, which strongly indicates that security patches and vulnerability fixes have not been applied, leaving the system exposed to known vulnerabilities.

Topics

#patch management#system updates#vulnerability remediation#security audit

Community Discussion

No community discussion yet for this question.

Full XK0-006 Practice