UCF STIG Viewer Logo

The system must have USB Mass Storage disabled unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22579 GEN008480 SV-38834r1_rule ECSC-1 Low
Description
USB is a common computer peripheral interface. USB devices may include storage devices that could be used to install malicious software on a system or exfiltrate data.
STIG Date
AIX 6.1 SECURITY TECHNICAL IMPLEMENTATION GUIDE 2018-09-18

Details

Check Text ( C-37091r1_chk )
If the system uses USB mass storage, this is not applicable.
# lslpp -l | grep -e devices.usbif.010100 -e devices.usbif.08025 -e devices.usbif.080400
If these filesets are installed on the system, USB mass storage is enabled and this is a finding.
Fix Text (F-32362r1_fix)
Disable USB mass storage on the system by using SMIT to remove the following filesets.
devices.usbif.010100
devices.usbif.08025002
devices.usbif.080400

# smitty remove