Microsoft Windows Server 2019

Windows Server 2019 Turning off File Explorer heap termination on corruption must be disabled

STIG ID: WN19-CC-000320 | SRG: SRG-OS-000480-GPOS-00227 | Severity: Low | CCI: CCI-000366 | Vulnerability ID: V-205871

Description

Legacy plug-in applications may continue to function when a File Explorer session has become corrupt. Disabling this feature will prevent this.

Check

C-205871r991589_chk

The default behavior is for File Explorer heap termination on corruption to be enabled.If the registry Value Name below does not exist, this is not a finding.If it exists and is configured with a value of "0", this is not a finding.If it exists and is configured with a value of "1", this is a finding.Registry Hive: HKEY_LOCAL_MACHINERegistry Path: \SOFTWARE\Policies\Microsoft\Windows\Explorer\Value Name: NoHeapTerminationOnCorruptionValue Type: REG_DWORDValue: 0x00000000 (0) (or if the Value Name does not exist)

Fix

F-6136r355976_fix

The default behavior is for File Explorer heap termination on corruption to be disabled.If this needs to be corrected, configure the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> File Explorer >> "Turn off heap termination on corruption" to "Not Configured" or "Disabled".