CWE-1312: Missing Protection for Mirrored Regions in On-Chip Fabric Firewall

BaseDraft

The firewall in an on-chip fabric protects the main addressed region, but it does not protect any mirrored memory or memory-mapped-IO (MMIO) regions.

View on MITRE
Back to CWE Lookup

Extended Description

Few fabrics mirror memory and address ranges, where mirrored regions contain copies of the original data. This redundancy is used to achieve fault tolerance. Whatever protections the fabric firewall implements for the original region should also apply to the mirrored regions. If not, an attacker could bypass existing read/write protections by reading from/writing to the mirrored regions to leak or corrupt the original data.

Technical Details

Structure
Simple

Applicable To

Languages
Not Language-Specific
Platforms
Not OS-Specific

Learn More

CWE-1312: Missing Protection for Mirrored Regions in On-Chip Fabric Firewall | CWE Lookup | Inventive HQ