CWE-1272

Sensitive Information Uncleared Before Debug/Power State Transition

Medium

Description

The product performs a power or debug state transition, but it does not clear sensitive information that should no longer be accessible due to changes to information access restrictions.

Potential Impact

How to Fix

Architecture and Design

During state transitions, information not needed in the next state should be removed before the transition to the next state.

Detection Methods

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1272 vulnerabilities in your codebase.

Get Security Assessment