1.5.2 Ensure XD/NX support is enabled

Information

Enabling any feature that can protect against buffer overflow attacks enhances the security of the system.

Solution

On 32 bit systems install a kernel with PAE support, no installation is required on 64 bit systems: If necessary configure your bootloader to load the new kernel and reboot the system. You may need to enable NX or XD support in your bios.

See Also

https://workbench.cisecurity.org/files/1861

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv6|8.4

Plugin: Unix

Control ID: 2f3098de919198810f43e75513e1c5181dd579ef4bd09a02a985a15485330908