Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-25884 | DTOO287 | SV-32370r1_rule | VIVM-1 | Medium |
Description |
---|
Failure to install the most current Office service pack leaves a system vulnerable to exploitation. Current service packs correct known security and system vulnerabilities. If Microsoft Office installation is not at most current service pack this is a Category II finding. If Microsoft Office installation is at an unsupported service pack this will be upgraded to a Category I finding since new vulnerabilities may not be patched. |
STIG | Date |
---|---|
Microsoft Office System 2007 | 2014-01-07 |
Check Text ( C-32765r1_chk ) |
---|
To determine what SP level is installed, Start any Office application, such as Word. Click on the Office Menu Button (upper left), Click "Word options" at the bottom of the menu, select "Resources" from the left column: The version number will be displayed alongside the "About" button on the right hand side display. If the "About" box information does not display a most current service pack, then this is a finding. Current Supported Service Pack Office 2007 – SP2 (See Severity Override). Severity Override: Unsupported Service Packs will be upgraded to a Category I finding. This includes the following: Office 2007 - prior to SP2. |
Fix Text (F-28840r1_fix) |
---|
Install the most current Office 2007 service pack. |