Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22511 | GEN007020 | SV-29988r1_rule | ECSC-1 | Medium |
Description |
---|
The SCTP is an IETF-standardized transport layer protocol. This protocol is not yet widely used. Binding this protocol to the network stack increases the attack surface of the host. Unprivileged local processes may be able to cause the kernel to dynamically load a protocol handler by opening a socket using the protocol. |
STIG | Date |
---|---|
HP-UX 11.31 Security Technical Implementation Guide | 2013-10-17 |
Check Text ( None ) |
---|
None |
Fix Text (F-30357r1_fix) |
---|
Configure the system to prevent the dynamic loading of the SCTP protocol handler. Preview the removal of SCTP: # swremove -p Remove: # swremove |