DTOO128 - OneNote - Data Execution Prevention must be enforced.

Information

Data Execution Prevention (DEP) is a set of hardware and software technologies performing additional checks on memory to help prevent malicious code from running on a system. The primary benefit of DEP is to help prevent code execution from data pages. Enabling this setting, turns off Data Execution Prevention. As a result, malicious code takes advantage of code injection or buffer overflow vulnerabilities possibly exploiting the computer.

Solution

Set the policy value for User Configuration -> Administrative Templates -> Microsoft OneNote 2010 -> OneNote Options -> Security -> Trust Center 'Turn off Data Execution Prevention' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_OneNote_2010_V1R9_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4), CAT|II, CCI|CCI-001170, Rule-ID|SV-33934r1_rule, STIG-ID|DTOO128, Vuln-ID|V-26590

Plugin: Windows

Control ID: f315f2848e2e5d6ee78242d11059ad59f6cfc40ea68b4f05b1d1d9acc6e44f68