CWE-1310

Missing Ability to Patch ROM Code

Medium

Description

Missing an ability to patch ROM code may leave a System or System-on-Chip (SoC) in a vulnerable state.

Potential Impact

How to Fix

Architecture and Design

Secure patch support to allow ROM code to be patched on the next boot.

Architecture and Design

Support patches that can be programmed in-field or during manufacturing through hardware fuses. This feature can be used for limited patching of devices after shipping, or for the next batch of silicon devices manufactured, without changing the full device ROM.

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1310 vulnerabilities in your codebase.

Get Security Assessment