1.5.2 Ensure XD/NX support is enabled

Information

Enabling any feature that can protect against buffer overflow attacks enhances the security of the system.

Solution

On 32 bit systems install a kernel with PAE support, no installation is required on 64 bit systems: If necessary configure your bootloader to load the new kernel and reboot the system. You may need to enable NX or XD support in your bios.

See Also

https://workbench.cisecurity.org/files/1856

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv6|8.4

Plugin: Unix

Control ID: 8aa2b9c34d3673cf757a5cff8faa456d98e82a52a7079212db50c002bb1dd15c