STIGQter STIGQter: STIG Summary: VMware vRealize Automation 7.x SLES Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Sep 2018:

The SLES for vRealize must implement address space layout randomization to protect its memory from unauthorized code execution.

DISA Rule

SV-100469r1_rule

Vulnerability Number

V-89819

Group Title

SRG-OS-000433-GPOS-00193

Rule Version

VRAU-SL-001340

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Run the following command:

#sysctl kernel.randomize_va_space=1

Check Contents

Verify "randomize_va_space" has not been changed from the default "1" setting.

# sysctl kernel.randomize_va_space

If the return value is not "kernel.randomize_va_space = 1", this is a finding.

Vulnerability Number

V-89819

Documentable

False

Rule Version

VRAU-SL-001340

Severity Override Guidance

Verify "randomize_va_space" has not been changed from the default "1" setting.

# sysctl kernel.randomize_va_space

If the return value is not "kernel.randomize_va_space = 1", this is a finding.

Check Content Reference

M

Target Key

3459

Comments