BaseIncomplete

CWE-1248Semiconductor Defects in Hardware Logic with Security-Sensitive Implications

Category: data-exposure

Description

The security-sensitive hardware module contains semiconductor defects.

Common consequences· 1

  • Availability / Access Control — DoS: Instability
    If such faults occur in security-sensitive hardware modules, the security objectives of the hardware module may be compromised.

Potential mitigations· 2

  • [Testing]
  • [Operation]

Related CAPEC attack patterns· 2

CAPEC-624CAPEC-625

References

  1. https://cwe.mitre.org/data/definitions/1248.html

Exploits (incoming)2

TypeTargetConfidenceTier
AttackPatternMobile Device Fault Injectioncapec-625100%live
AttackPatternHardware Fault Injectioncapec-624100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Improper Handling of Faults that Lead to Instruction Skips
CWE
Hardware Logic with Insecure De-Synchronization between Control and Data Channels
CWE
Hardware Logic Contains Race Conditions
CWE
Improper Protection Against Voltage and Clock Glitches
CWE
Exposure of Sensitive System Information Due to Uncleared Debug Information
CWE
Improper Access Control for Volatile Memory Containing Boot Code
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.