BaseIncomplete

CWE-1422Exposure of Sensitive Information caused by Incorrect Data Forwarding during Transient Execution

Category: data-exposure

Description

A processor event or prediction may allow incorrect or stale data to be forwarded to transient operations, potentially exposing data over a covert channel.

Common consequences· 1

  • Confidentiality — Read Memory

Potential mitigations· 5

  • [Architecture and Design]
  • [Requirements]
  • [Requirements]
  • [Requirements]
  • [Build and Compilation]

References

  1. https://cwe.mitre.org/data/definitions/1422.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Exposure of Sensitive Information during Transient Execution
CWE
Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution
CWE
Exposure of Sensitive Information caused by Shared Microarchitectural Predictor State that Influences Transient Execution
CWE
Information Exposure through Microarchitectural State after Transient Execution
CWE
Sensitive Information Uncleared Before Debug/Power State Transition
CWE
Exposure of Sensitive System Information Due to Uncleared Debug Information
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.