CWE-1234

Hardware Internal or Debug Modes Allow Override of Locks

High

Description

System configuration protection may be bypassed during debug mode.

Potential Impact

How to Fix

Architecture and Design

Security Lock bit protections should be reviewed for any bypass/override modes supported. Any supported override modes either should be removed or protected using authenticated debug modes. Security lock programming flow and lock properties should be tested in pre-silicon and post-silicon testing.

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1234 vulnerabilities in your codebase.

Get Security Assessment