BaseIncomplete

CWE-1319Improper Protection against Electromagnetic Fault Injection (EM-FI)

Category: injection

Description

The device is susceptible to electromagnetic fault injection attacks, causing device internal information to be compromised or security mechanisms to be bypassed.

Common consequences· 1

  • Confidentiality / Integrity / Access Control / Availability — Modify Memory, Read Memory, Gain Privileges or Assume Identity, Bypass Protection Mechanism, Execute Unauthorized Code or Commands

Potential mitigations· 1

  • [Architecture and Design, Implementation]

Related CAPEC attack patterns· 2

CAPEC-624CAPEC-625

References

  1. https://cwe.mitre.org/data/definitions/1319.html

Exploits (incoming)2

TypeTargetConfidenceTier
AttackPatternMobile Device Fault Injectioncapec-625100%live
AttackPatternHardware Fault Injectioncapec-624100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Improper Protection of Physical Side Channels
CWE
Improper Protection Against Voltage and Clock Glitches
CWE
Improper Physical Access Control
CWE
Improper Access Control for Volatile Memory Containing Boot Code
CWE
Semiconductor Defects in Hardware Logic with Security-Sensitive Implications
CWE
Hardware Logic with Insecure De-Synchronization between Control and Data Channels
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.