[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-96653-1

Platform: cpe:/o:microsoft:windows_11Date: (C)2022-05-07   (M)2023-07-04



Dictates whether or not Windows is allowed to use standby states when sleeping the computer. When this policy is enabled, Windows may use standby states to sleep the computer. If this policy is disabled, the only sleep state a computer may enter is hibernate. Countermeasure: During hibernation, system power state S4, the computer's RAM and CPU are powered off and memory is flushed to discard any secrets that had been stored there. Operating system context, however, is maintained in a hibernation file (an image of memory) that the system writes to the encrypted BitLocker OS volume before entering the S4 state. Upon restart, the loader reads this file and jumps to the system's previous, pre-hibernation location. Additionally, Disabling sleep states (S1-S3), and allowing only hibernation state (S4) has the additional benefit that the system resumes through the BitLocker startup checks to include prompting the user for a PIN if TPM+PIN is used. Potential Impact: Users will not be able to use Sleep (S3) which resumes faster than Hibernation (S4).


Parameter:

[enabled/disabled]


Technical Mechanism:

(1) GPO: Computer Configuration\Administrative Templates\System\Power Management\Sleep Settings\Allow Standby States (S1-S3) When Sleeping (Plugged In) (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Power\PowerSettings\abfc2519-3608-4c2a-94ea-171b0ed546ab!ACSettingIndex

CCSS Severity:CCSS Metrics:
CCSS Score : 3.5Attack Vector: ADJACENT_NETWORK
Exploit Score: 2.1Attack Complexity: LOW
Impact Score: 1.4Privileges Required: LOW
Severity: LOWUser Interaction: NONE
Vector: AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:LScope: UNCHANGED
 Confidentiality: NONE
 Integrity: NONE
 Availability: LOW
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:79392


OVAL    1
oval:org.secpod.oval:def:79392
XCCDF    2
xccdf_org.secpod_benchmark_general_Windows_11
xccdf_org.secpod_benchmark_SecPod_Windows_11

© SecPod Technologies