UCF STIG Viewer Logo

The application must prevent non-privileged users from circumventing malicious code protection capabilities.


Overview

Finding ID Version Rule ID IA Controls Severity
V-32577 SRG-APP-000273-DB-NA SV-42914r1_rule Medium
Description
Malicious code protection software must be protected to prevent a non-privileged user or malicious piece of software from disabling the protection mechanism. A common tactic of malware is to identify the type of malicious code protection software running on the system and deactivate it. Malicious code includes viruses, worms, Trojan horses, and Spyware. Examples include the capability for non-administrative users to turn off or otherwise disable anti-virus. This requirement is specific to applications providing malicious code protection. This requirement is NA for databases.
STIG Date
Database Security Requirements Guide 2012-07-02

Details

Check Text ( C-41016r1_chk )
This check is NA for databases.
Fix Text (F-36492r1_fix)
This fix is NA for databases.