CWE-1193

Power-On of Untrusted Execution Core Before Enabling Fabric Access Control

High

Description

The product enables components that contain untrusted firmware before memory and fabric access controls have been enabled.

Potential Impact

How to Fix

Architecture and Design

The boot sequence should enable fabric access controls and memory protections before enabling third-party hardware IPs and peripheral microcontrollers that use untrusted firmware.

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1193 vulnerabilities in your codebase.

Get Security Assessment