Check: 2.022
Windows 2003 MS STIG:
2.022
(in version v6 r37)
Title
Disallow AutoPlay/Autorun from Autorun.inf (Cat I impact)
Discussion
This registry key will prevent the autorun.inf from executing commands.
Check Content
In the Registry Editor, navigate to the following registry key: Registry Hive: HKEY_LOCAL_MACHINE Subkey: SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf Value Name: (Default) Type: REG_Sz Value: @SYS:DoesNotExist If the above listed registry value does not exist, then this is a finding.
Fix Text
Add the registry value as specified in the manual check.
Additional Identifiers
Rule ID: SV-29583r1_rule
Vulnerability ID: V-17900
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001764 |
Prevent program execution in accordance with organization-defined policies, rules of behavior, and/or access agreements regarding software program usage and restrictions; rules authorizing the terms and conditions of software program usage. |
Controls
Number | Title |
---|---|
CM-7(2) |
Prevent Program Execution |