[Forgot Password]
Login  Register Subscribe

24436

 
 

131815

 
 

116564

 
 

909

 
 

91325

 
 

141

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-47028-6

Platform: win2016Date: (C)2017-08-03   (M)2018-11-15



"Turn off heap termination on corruption" Disabling heap termination on corruption can allow certain legacy plug-in applications to function without terminating Explorer immediately, although Explorer may still terminate unexpectedly later. Vulnerability: Enabling or not configuring this setting can allow certain types of malware to affect Explorer stability and effectively perform a denial of service (DoS) attack. Counter Measure: Disable this setting depending on your organization's requirements. Potential Impact: Disabling this policy setting will ensure that Data Execution Prevention blocks certain types of malware from exploiting Explorer.


Parameter: NoHeapTerminationOnCorruption


Technical Mechanism: Fix: (1) GPO: Computer Configuration\Administrative Templates\Windows Components\File Explorer (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Explorer!NoHeapTerminationOnCorruption

References:

Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:40319


OVAL    1
oval:org.secpod.oval:def:40319
XCCDF    2
xccdf_org.secpod_benchmark_general_Windows_Server_2016
xccdf_org.secpod_benchmark_SecPod_Windows_Server_2016

© SecPod Technologies