BaseStable

CWE-1260Improper Handling of Overlap Between Protected Memory Ranges

Category: memory

Description

The product allows address regions to overlap, which can result in the bypassing of intended memory protection.

Common consequences· 1

  • Confidentiality / Integrity / Availability — Modify Memory, Read Memory, DoS: Instability

Potential mitigations· 2

  • [Architecture and Design]
  • [Implementation]

Related CAPEC attack patterns· 2

CAPEC-456CAPEC-679

References

  1. https://cwe.mitre.org/data/definitions/1260.html

Exploits (incoming)2

TypeTargetConfidenceTier
AttackPatternInfected Memorycapec-456100%live
AttackPatternExploitation of Improperly Configured or Implemented Memory Protectionscapec-679100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Improper Restriction of Operations within the Bounds of a Memory Buffer
CWE
Improper Prevention of Lock Bit Modification
CWE
Buffer Over-read
CWE
Use of Out-of-range Pointer Offset
CWE
Improper Access Control for Register Interface
CWE
Insufficient Granularity of Address Regions Protected by Register Locks
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.