BaseIncomplete

CWE-1429Missing Security-Relevant Feedback for Unexecuted Operations in Hardware Interface

Category: other

Description

The product has a hardware interface that silently discards operations in situations for which feedback would be security-relevant, such as the timely detection of failures or attacks.

Common consequences· 3

  • Confidentiality — Read Memory, Read Files or Directories
  • Integrity — Modify Memory, Modify Files or Directories
  • Availability — DoS: Resource Consumption (Memory), DoS: Crash, Exit, or Restart

Potential mitigations· 2

  • [Architecture and Design]
  • [Implementation]

References

  1. https://cwe.mitre.org/data/definitions/1429.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Hardware Logic with Insecure De-Synchronization between Control and Data Channels
CWE
Improper Restriction of Software Interfaces to Hardware Features
CWE
Driving Intermediate Cryptographic State/Results to Hardware Module Outputs
CWE
Security-Sensitive Hardware Controls with Missing Lock Bit Protection
CWE
Improper Access Control for Register Interface
CWE
Insufficient Logging
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.