DTOO336 - Word 6.0 binary documents and templates must be configured for block open/save actions.

Information

This setting specifies whether users can open, view, edit, or save Word files saved in the specified format. Enabling block of the specified format mitigates zero-day security attacks (which are attacks that occur during between the time that a vulnerability becomes publicly known and a software update or service pack is available) by temporarily preventing users from opening specific types of files and to prevent a user from opening files that have been saved in earlier and pre-release (beta) Microsoft Office formats.

Solution

Set the policy value for User Configuration -> Administrative Templates -> Microsoft Word 2013 -> Word Options -> Security -> Trust Center -> File Block Settings 'Word 6.0 binary documents and templates' to 'Enabled: Open/Save blocked, use open policy'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Word_2010_V1R12_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(1), CAT|II, CCI|CCI-001662, Rule-ID|SV-242856r961086_rule, STIG-ID|DTOO336, STIG-Legacy|SV-53593, STIG-Legacy|V-26656, Vuln-ID|V-242856

Plugin: Windows

Control ID: 7b41bacea1ee6cca9773a66fb649c0b392760d7d5432530662a785369b0304a2