Check: GEN005260
Title
X Window System connections that are not required must be disabled. (Cat II impact)
Discussion
If unauthorized clients are permitted access to the X server, a user's X session may be compromised.
Check Content
Determine if the X Window system is running. Procedure: # ps -ef |grep X Ask the SA if the X Window system is an operational requirement. If it is not, this is a finding.
Fix Text
Disable the X Windows server on the system.
Additional Identifiers
Rule ID:
Vulnerability ID: V-12018
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
CCI-001436 |
The organization disables organization-defined networking protocols within the information system deemed to be nonsecure except for explicitly identified components in support of specific operational requirements. |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |