STIGQter STIGQter: STIG Summary: General Purpose Operating System Security Requirements Guide Version: 3 Release: 3 Benchmark Date: 28 Oct 2025:

The operating system must install security-relevant software updates within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

DISA Rule

SV-259333r1137708_rule

Vulnerability Number

V-259333

Group Title

SRG-OS-000439

Rule Version

SRG-OS-000439-GPOS-00195

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Install security-relevant software updates on the operating system within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

Check Contents

Verify security-relevant software updates are installed on the operating system within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

If security-relevant software updates are not installed on the operating system within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs), this is a finding.

Vulnerability Number

V-259333

Documentable

False

Rule Version

SRG-OS-000439-GPOS-00195

Severity Override Guidance

Verify security-relevant software updates are installed on the operating system within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

If security-relevant software updates are not installed on the operating system within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs), this is a finding.

Check Content Reference

M

Target Key

2895