CWE-1326

Missing Immutable Root of Trust in Hardware

High

Description

A missing immutable root of trust in the hardware results in the ability to bypass secure boot or execute untrusted or adversarial boot code.

Potential Impact

How to Fix

Architecture and Design

When architecting the system, the RoT should be designated for storage in a memory that does not allow further programming/writes.

Implementation

During implementation and test, the RoT memory location should be demonstrated to not allow further programming/writes.

Detection Methods

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1326 vulnerabilities in your codebase.

Get Security Assessment