unified

UC-VULN-07 — Harden runtime error handling, output filtering, and memory

Build and configure software so that failures and outputs cannot be weaponized: handle errors gracefully, generating only the minimum information needed for correction and revealing no sensitive data in messages or logs. Validate and filter information output from applications so it matches expected content and format before release to users or downstream systems. Enable hardware- and OS-level memory protections such as data-execution prevention and address-space layout randomization on all supporting systems.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
Vulnerability & Patch Management
type
preventive
category
technical

Details

unified_id
UC-VULN-07
title
Harden runtime error handling, output filtering, and memory
statement
Build and configure software so that failures and outputs cannot be weaponized: handle errors gracefully, generating only the minimum information needed for correction and revealing no sensitive data in messages or logs. Validate and filter information output from applications so it matches expected content and format before release to users or downstream systems. Enable hardware- and OS-level memory protections such as data-execution prevention and address-space layout randomization on all supporting systems.
domain
Vulnerability & Patch Management
control_type
preventive
control_category
technical
members
  • framework
    nist-800-53
    control_id
    SI-11
    coverage
    full
    relationship
    superset_of
  • framework
    nist-800-53
    control_id
    SI-15
    coverage
    full
    relationship
    superset_of
  • framework
    nist-800-53
    control_id
    SI-16
    coverage
    full
    relationship
    superset_of
guidance

    Source

    No record-specific source URL is provided.

    Connections