STIGhub
STIGs
RMF Controls
Compare
← All Controls
SI-2
System and Information Integrity
Rev 5
Flaw Remediation
CCI Identifiers (12)
CCI-001225
Identify system flaws.
CCI-001226
Report system flaws.
CCI-001227
Correct system flaws.
CCI-001228
Test software updates related to flaw remediation for effectiveness before installation.
CCI-001229
Test software updates related to flaw remediation for potential side effects before installation.
CCI-001230
Incorporate flaw remediation into the organizational configuration management process.
CCI-002602
Test firmware updates related to flaw remediation for effectiveness before installation.
CCI-002603
Test firmware updates related to flaw remediation for potential side effects before installation.
CCI-002604
Defines the time period following the release of updates within which security-related software updates are to be installed.
CCI-002605
Install security-relevant software updates within an organization-defined time period of the release of the updates.
CCI-002606
Defines the time period following the release of updates within which security-related firmware updates are to be installed.
CCI-002607
Install security-relevant firmware updates within an organization-defined time period of the release of the updates.
Linked STIG Checks (173)
Across 150 STIGs. Click to expand.
▶
Adobe Acrobat Professional DC Continuous Track Security Technical Implementation Guide
1 check
▶
Adobe Acrobat Reader DC Continuous Track Security Technical Implementation Guide
1 check
▶
Adobe ColdFusion Security Technical Implementation Guide
2 checks
▶
Amazon Linux 2023 Security Technical Implementation Guide
1 check
▶
Anduril NixOS Security Technical Implementation Guide
1 check
▶
Apache Server 2.4 UNIX Server Security Technical Implementation Guide
1 check
▶
Apache Server 2.4 Windows Server Security Technical Implementation Guide
1 check
▶
Apache Tomcat Application Server 9 Security Technical Implementation Guide
1 check
▶
Apple macOS 13 (Ventura) Security Technical Implementation Guide
1 check
▶
Apple macOS 15 (Sequoia) Security Technical Implementation Guide
1 check
▶
Apple macOS 26 (Tahoe) Security Technical Implementation Guide
1 check
▶
Application Security and Development Security Technical Implementation Guide
1 check
▶
Application Server Security Requirements Guide
1 check
▶
ArcGIS for Server 10.3 Security Technical Implementation Guide
1 check
▶
Arctic Wolf CylanceON-PREM Security Technical Implementation Guide
1 check
▶
CA IDMS Security Technical Implementation Guide
1 check
▶
Central Log Server Security Requirements Guide
1 check
▶
Cisco IOS Switch NDM Security Technical Implementation Guide
1 check
▶
Cisco IOS XE Switch NDM Security Technical Implementation Guide
1 check
▶
Cisco NX OS Switch NDM Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x Delivery Controller Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x License Server Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x Linux Virtual Delivery Agent Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x StoreFront Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x Windows Virtual Delivery Agent Security Technical Implementation Guide
1 check
▶
Citrix Virtual Apps and Desktop 7.x Workspace App Security Technical Implementation Guide
1 check
▶
Citrix XenDesktop 7.x Delivery Controller Security Technical Implementation Guide
1 check
▶
Citrix XenDesktop 7.x License Server Security Technical Implementation Guide
1 check
▶
Citrix XenDesktop 7.x Receiver Security Technical Implementation Guide
1 check
▶
Citrix XenDesktop 7.x StoreFront Security Technical Implementation Guide
1 check
▶
Citrix XenDesktop 7.x Windows VDA Security Technical Implementation Guide
1 check
▶
Cloud Linux AlmaLinux OS 9 Security Technical Implementation Guide
1 check
▶
Container Platform Security Requirements Guide
2 checks
▶
Crunchy Data Postgres 16 Security Technical Implementation Guide
1 check
▶
Crunchy Data PostgreSQL Security Technical Implementation Guide
1 check
▶
Database Security Requirements Guide
1 check
▶
Dell OS10 Switch NDM Security Technical Implementation Guide
1 check
▶
Docker Enterprise 2.x Linux/UNIX Security Technical Implementation Guide
1 check
▶
Domain Name System (DNS) Security Requirements Guide
2 checks
▶
EDB Postgres Advanced Server v11 on Windows Security Technical Implementation Guide
1 check
▶
EDB Postgres Advanced Server v9.6 Security Technical Implementation Guide
1 check
▶
EnterpriseDB Postgres Advanced Server (EPAS) Security Technical Implementation Guide
1 check
▶
F5 BIG-IP Access Policy Manager Security Technical Implementation Guide
1 check
▶
F5 BIG-IP Advanced Firewall Manager Security Technical Implementation Guide
1 check
▶
F5 BIG-IP Application Security Manager Security Technical Implementation Guide
1 check
▶
F5 BIG-IP Device Management Security Technical Implementation Guide
1 check
▶
F5 BIG-IP Local Traffic Manager Security Technical Implementation Guide
1 check
▶
F5 BIG-IP TMOS NDM Security Technical Implementation Guide
1 check
▶
ForeScout CounterACT NDM Security Technical Implementation Guide
1 check
▶
Forescout Network Device Management Security Technical Implementation Guide
1 check
▶
Fortinet FortiGate Firewall NDM Security Technical Implementation Guide
1 check
▶
General Purpose Operating System Security Requirements Guide
1 check
▶
Google Chrome Current Windows Security Technical Implementation Guide
1 check
▶
HPE Alletra Storage ArcusOS Network Device Management Security Technical Implementation Guide
1 check
▶
HPE Nimble Storage Array NDM Security Technical Implementation Guide
1 check
▶
HYCU Protege Security Technical Implementation Guide
1 check
▶
IBM Aspera Platform 4.2 Security Technical Implementation Guide
1 check
▶
IBM DB2 V10.5 LUW Security Technical Implementation Guide
1 check
▶
IBM MQ Appliance V9.0 AS Security Technical Implementation Guide
1 check
▶
IBM MQ Appliance v9.0 NDM Security Technical Implementation Guide
1 check
▶
IBM WebSphere Liberty Server Security Technical Implementation Guide
1 check
▶
IBM WebSphere Traditional V9.x Security Technical Implementation Guide
2 checks
▶
IBM zSecure Suite Security Technical Implementation Guide
1 check
▶
ISEC7 Sphere Security Technical Implementation Guide
1 check
▶
Ivanti Connect Secure NDM Security Technical Implementation Guide
1 check
▶
Ivanti EPMM Server Security Technical Implementation Guide
1 check
▶
Ivanti MobileIron Core MDM Server Security Technical Implementation Guide
1 check
▶
Ivanti MobileIron Sentry 9.x NDM Security Technical Implementation Guide
1 check
▶
Ivanti Sentry 9.x NDM Security Technical Implementation Guide
1 check
▶
JBoss Enterprise Application Platform 6.3 Security Technical Implementation Guide
2 checks
▶
Juniper EX Series Switches Network Device Management Security Technical Implementation Guide
1 check
▶
Mainframe Product Security Requirements Guide
1 check
▶
MariaDB Enterprise 10.x Security Technical Implementation Guide
1 check
▶
MarkLogic Server v9 Security Technical Implementation Guide
1 check
▶
McAfee Application Control 7.x Security Technical Implementation Guide
1 check
▶
Microsoft Access 2016 Security Technical Implementation Guide
1 check
▶
Microsoft Edge Security Technical Implementation Guide
1 check
▶
Microsoft Excel 2016 Security Technical Implementation Guide
1 check
▶
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
1 check
▶
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
1 check
▶
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
1 check
▶
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
1 check
▶
Microsoft Internet Explorer 11 Security Technical Implementation Guide
1 check
▶
Microsoft Office System 2016 Security Technical Implementation Guide
1 check
▶
Microsoft OneDrive Security Technical Implementation Guide
1 check
▶
Microsoft OneNote 2016 Security Technical Implementation Guide
1 check
▶
Microsoft Outlook 2016 Security Technical Implementation Guide
1 check
▶
Microsoft PowerPoint 2016 Security Technical Implementation Guide
1 check
▶
Microsoft Publisher 2016 Security Technical Implementation Guide
1 check
▶
Microsoft SCOM Security Technical Implementation Guide
1 check
▶
Microsoft Skype for Business 2016 Security Technical Implementation Guide
1 check
▶
Microsoft SQL Server 2022 Instance Security Technical Implementation Guide
1 check
▶
Microsoft Visio 2016 Security Technical Implementation Guide
1 check
▶
Microsoft Windows Server 2025 Security Technical Implementation Guide
1 check
▶
Microsoft Word 2016 Security Technical Implementation Guide
1 check
▶
Mirantis Kubernetes Engine Security Technical Implementation Guide
2 checks
▶
MongoDB Enterprise Advanced 4.x Security Technical Implementation Guide
1 check
▶
MongoDB Enterprise Advanced 7.x Security Technical Implementation Guide
2 checks
▶
MongoDB Enterprise Advanced 8.x Security Technical Implementation Guide
1 check
▶
Mozilla Firefox Security Technical Implementation Guide
1 check
▶
MS SQL Server 2014 Instance Security Technical Implementation Guide
2 checks
▶
MS SQL Server 2016 Instance Security Technical Implementation Guide
1 check
▶
Network Device Management Security Requirements Guide
1 check
▶
Nutanix AOS 5.20.x Application Security Technical Implementation Guide
1 check
▶
Nutanix AOS 5.20.x OS Security Technical Implementation Guide
1 check
▶
Oracle Database 11.2g Security Technical Implementation Guide
1 check
▶
Oracle Database 19c Security Technical Implementation Guide
1 check
▶
Oracle HTTP Server 12.1.3 Security Technical Implementation Guide
1 check
▶
Oracle Linux 9 Security Technical Implementation Guide
1 check
▶
Oracle MySQL 8.0 Security Technical Implementation Guide
1 check
▶
Oracle WebLogic Server 12c Security Technical Implementation Guide
1 check
▶
Palo Alto Networks Prisma Cloud Compute Security Technical Implementation Guide
2 checks
▶
PostgreSQL 9.x Security Technical Implementation Guide
1 check
▶
Rancher Government Solutions RKE2 Security Technical Implementation Guide
1 check
▶
Red Hat Ansible Automation Controller Application Server Security Technical Implementation Guide
1 check
▶
Red Hat OpenShift Container Platform 4.12 Security Technical Implementation Guide
2 checks
▶
Red Hat OpenShift Container Platform 4.x Security Technical Implementation Guide
2 checks
▶
Redis Enterprise 6.x Security Technical Implementation Guide
1 check
▶
Riverbed NetIM NDM Security Technical Implementation Guide
1 check
▶
Riverbed NetProfiler Security Technical Implementation Guide
1 check
▶
RUCKUS ICX NDM Security Technical Implementation Guide
1 check
▶
Soaring Software Solutions TCMax 9.x Security Technical Implementation Guide
1 check
▶
Splunk Enterprise 7.x for Windows Security Technical Implementation Guide
1 check
▶
Splunk Enterprise 8.x for Linux Security Technical Implementation Guide
1 check
▶
SUSE Linux Enterprise Server 12 Security Technical Implementation Guide
2 checks
▶
SUSE Linux Enterprise Server v11 for System z Security Technical Implementation Guide
4 checks
▶
Symantec Edge SWG NDM Security Technical Implementation Guide
1 check
▶
Tanium 7.0 Security Technical Implementation Guide
1 check
▶
Tanium 7.3 Security Technical Implementation Guide
1 check
▶
Tanium 7.x Application on TanOS Security Technical Implementation Guide
1 check
▶
Tanium 7.x Operating System on TanOS Security Technical Implementation Guide
1 check
▶
Tanium 7.x Security Technical Implementation Guide
1 check
▶
Trend Micro Deep Security 9.x Security Technical Implementation Guide
2 checks
▶
Trend Micro TippingPoint NDM Security Technical Implementation Guide
1 check
▶
Unified Endpoint Management Server Security Requirements Guide
1 check
▶
Virtual Machine Manager Security Requirements Guide
1 check
▶
VMW vRealize Automation 7.x HA Proxy Security Technical Implementation Guide
2 checks
▶
VMW vRealize Automation 7.x PostgreSQL Security Technical Implementation Guide
2 checks
▶
VMW vRealize Operations Manager 6.x PostgreSQL Security Technical Implementation Guide
2 checks
▶
VMware Automation 7.x Application Security Technical Implementation Guide
1 check
▶
VMware Horizon 7.13 Connection Server Security Technical Implementation Guide
1 check
▶
VMware NSX-T Manager NDM Security Technical Implementation Guide
1 check
▶
VMware vRealize Automation 7.x Lighttpd Security Technical Implementation Guide
2 checks
▶
VMware vRealize Automation 7.x tc Server Security Technical Implementation Guide
2 checks
▶
VMware vRealize Automation 7.x vAMI Security Technical Implementation Guide
2 checks
▶
VMware vRealize Automation 7.x vIDM Security Technical Implementation Guide
1 check
▶
VMware vRealize Operations Manager 6.x Application Security Technical Implementation Guide
1 check
▶
VMware vRealize Operations Manager 6.x tc Server Security Technical Implementation Guide
2 checks
▶
Web Server Security Requirements Guide
1 check
▶
Xylok Security Suite 20.x Security Technical Implementation Guide
1 check