1.5.2 Ensure XD/NX support is enabled

Information

Enabling any feature that can protect against buffer overflow attacks enhances the security of the system.

Solution

On 32 bit systems install a kernel with PAE support, no installation is required on 64 bit systems: If necessary configure your bootloader to load the new kernel and reboot the system. You may need to enable NX or XD support in your bios.

See Also

https://workbench.cisecurity.org/files/1859

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-16, CSCv6|8.4

Plugin: Unix

Control ID: 02f6daecc0c7bf5ccad0fc7b83c4f003c17dd4893878f4cc0bf649613d21ab41