STIGQter STIGQter: STIG Summary: Container Platform Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 28 Oct 2025:

The container platform must prohibit the installation of patches and updates without explicit privileged status.

DISA Rule

SV-233184r981884_rule

Vulnerability Number

V-233184

Group Title

SRG-APP-000378

Rule Version

SRG-APP-000378-CTR-000880

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the container platform to only allow patch installation and upgrades using privileged accounts.

Check Contents

Review the container platform configuration to determine if patches and updates can only be installed through accounts with privileged status.

Attempt to install a patch or upgrade using a nonprivileged user account.

If patches or updates can be installed using a nonprivileged account or the container platform is not configured to stop the installation using a nonprivileged account, this is a finding.

Vulnerability Number

V-233184

Documentable

False

Rule Version

SRG-APP-000378-CTR-000880

Severity Override Guidance

Review the container platform configuration to determine if patches and updates can only be installed through accounts with privileged status.

Attempt to install a patch or upgrade using a nonprivileged user account.

If patches or updates can be installed using a nonprivileged account or the container platform is not configured to stop the installation using a nonprivileged account, this is a finding.

Check Content Reference

M

Target Key

5239