UCF STIG Viewer Logo

The Firefox browser home page is not set to blank or a trusted site.


Overview

Finding ID Version Rule ID IA Controls Severity
V-57661 DTBF-0021 SV-72071r1_rule Medium
Description
The browser home page parameter specifies the web page that is to be displayed when the browser is started explicitly and when product-specific buttons or key sequences for the home page are accessed. This helps to mitigate the possibility of automatic inadvertent execution of script added to a previously safe site.
STIG Date
Mozilla Firefox 2017-03-22

Details

Check Text ( C-58483r3_chk )
Procedure:
In about:config, verify that the setting for the following Preference names are set and locked.

“browser.startup.homepage”, set to an organizationally approved default homepage.

Criteria:
If the values of the listed Preferences are not set and locked to these settings, then this is a finding.
Fix Text (F-62863r1_fix)
Set and lock the following preferences using the “Mozilla.cfg” file:
“browser.startup.homepage”, set to an organizationally approved default homepage.