1.5.2 Ensure XD/NX support is enabled

Information

Enabling any feature that can protect against buffer overflow attacks enhances the security of the system.

Solution

On 32 bit systems install a kernel with PAE support, no installation is required on 64 bit systems: If necessary configure your bootloader to load the new kernel and reboot the system. You may need to enable NX or XD support in your bios.

See Also

https://workbench.cisecurity.org/files/1857

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv6|8.4

Plugin: Unix

Control ID: ce041219da4ed93b0dedac07940b6222a485d32d0847d8b76509bbb13a759f05