CWE-1271: Uninitialized Value on Reset for Registers Holding Security Settings

BaseIncomplete

Security-critical logic is not set to a known value on reset.

View on MITRE
Back to CWE Lookup

Extended Description

When the device is first brought out of reset, the state of registers will be indeterminate if they have not been initialized by the logic. Before the registers are initialized, there will be a window during which the device is in an insecure state and may be vulnerable to attack.

Technical Details

Structure
Simple

Applicable To

Languages
Not Language-Specific
Platforms
Not OS-Specific

Learn More