CWE-1258

Exposure of Sensitive System Information Due to Uncleared Debug Information

High

Description

The hardware does not fully clear security-sensitive values, such as keys and intermediate values in cryptographic operations, when debug mode is entered.

Potential Impact

How to Fix

Architecture and Design

Whenever debug mode is enabled, all registers containing sensitive assets must be cleared.

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1258 vulnerabilities in your codebase.

Get Security Assessment