Fatally corrupt files must be blocked from opening.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-71673
DTOO322
SV-86297r1_rule
Medium
Description
When disabled, fatally corrupt files are prevented from opening. When enabled, the user is warned but may choose to open the file.By default, fatally corrupt files are prevented from opening.
Verify the policy value for User Configuration -> Administrative Templates -> Microsoft Publisher 2016 -> Security "Prompt to allow fatally corrupt files to open instead of blocking them" is set to "Disabled".
Procedure: Use the Windows Registry Editor to navigate to the following key:
Criteria: If the value PromptForBadFiles is REG_DWORD = 0, this is not a finding.
Fix Text (F-77997r1_fix)
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Publisher 2016 -> Security "Prompt to allow fatally corrupt files to open instead of blocking them" to "Disabled".