CWE Database
/

CWE-1276

Back to CWE list

CWE-1276

Hardware Child Block Incorrectly Connected to Parent System

Base
Incomplete

Description

Signals between a hardware IP and the parent system design are incorrectly connected causing security risks.

{"xhtml:p":["Individual hardware IP must communicate with the parent system in order for the product to function correctly and as intended. If implemented incorrectly, while not causing any apparent functional issues, may cause security issues. For example, if the IP should only be reset by a system-wide hard reset, but instead the reset input is connected to a software-triggered debug mode reset (which is also asserted during a hard reset), integrity of data inside the IP can be violated."]}

Parent Weaknesses (ChildOf)

Common Consequences

Scope

Confidentiality
Integrity
Availability

Impact

Varies by Context

Potential Mitigations

Testing

System-level verification may be used to ensure that components are correctly connected and that design security requirements are not violated due to interactions between various IP blocks.

Applicable Platforms

Not Language-Specific

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now