National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

Microsoft Outlook 2013 STIG Version 1, Release 13 Checklist Details (Checklist Revisions)

SCAP 1.2 Content:

Supporting Resources:

Target:

Target CPE Name Product Category
Microsoft Outlook 2013 cpe:/a:microsoft:outlook:2013 (View CVEs)
  • Desktop Client

Checklist Highlights

Checklist Name:
Microsoft Outlook 2013 STIG
Checklist ID:
541
Version:
Version 1, Release 13
Type:
Compliance
Review Status:
Under Review
Authority:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:
04/28/2017
Checklist Group:
View

Checklist Summary:

This Microsoft Office Technology Overview, along with the associated Security Technical Implementation Guide (STIG), provides the technical security policies, requirements, and implementation details for applying security concepts to Commercial-Off-The-Shelf (COTS) applications. The nearly universal presence of systems on the desktops of all levels of staff provides tremendous opportunities for office automation, communication, data sharing, and collaboration. Unfortunately, this presence also brings about dependence and vulnerabilities. Malicious and mischievous forces have attempted to take advantage of the vulnerabilities and dependencies to disrupt the work processes of the Government. Compounding this problem is the fact that the vendors of software applications have not expended sufficient effort to provide strong security in their applications. Where applications do offer security options, the default settings typically do not provide a strong security posture.

Checklist Role:

  • Desktop Client

Known Issues:

Not Provided

Target Audience:

Developed for the DOD. This checklist has been created for IT professionals, particularly Windows system administrators and information security personnel. The document assumes that the reader has experience installing and administering applications on Windows-based systems in domain or standalone configurations.

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

Not Provided

Regulatory Compliance:

DOD Directive 8500.1

Comments/Warnings/Miscellaneous:

Not Provided

Disclaimer:

Not Provided

Product Support:

disa.stig_spt@mail.mil

Point of Contact:

disa.stig_spt@mail.mil

Sponsor:

Not Provided

Licensing:

Not Provided

Change History:

Version 1, Release 4 Standalone - 05 August 2015
Version 1, Release 2 Benchmark - 05 August 2015
Updated status from "under review" to "final" - 22 June 2015
Benchmark - Version 1, Release 1 - 20 May 2015
Changed product from version 2014 to version 2013 - 20 May 2015
Changed status from "under review" to "final" - 11 September 2015
Version 1, Release 5 - 29 October 2015
Changed status from "Under Review" to "Final" - 04 December 2015
Version 1, Release 6 - 29 January 2016
3/8/2016 - Promote to Final
updated to v1, r7 - 07/22/2016
Updated to FINAL - 09/12/2016
Updated STIG to V1, R8 - 10-28-2016
updated to FINAL - 12/07/2016
Updated to Version 1, Release 9 - 01/27/2017
Updated to FINAL - 03/08/2017
Updated to v1, r10 - 04/24/2017
Updated to FINAL - 05/22/2017
null
Updated URL to reflect change to the DISA website - http --> https
Updated - 11/01/2017
Updated to FINAL - 11/27/2017
updated to v1,r12 - 4/26/18
Updated to FINAL - 5/27/18
Added GPOs - 8/6/18
Updated to FINAL - 9/6/2018
Updated to Version 1, Release 13 - 10/25/18

Dependency/Requirements:

URL Description

References:

Reference URL Description

NIST checklist record last modified on 10/25/2018


* This checklist is still undergoing review for inclusion into the NCP.