CWE-1233: Security-Sensitive Hardware Controls with Missing Lock Bit Protection

low-risk

The product uses a register lock bit protection mechanism, but it does not ensure that the lock bit prevents modification of system registers or controls that perform changes to important hardware system configuration.

Abstraction: Base

Common Consequences

Access Control Modify Memory

Detection Methods

Manual Analysis

Set the lock bit. Attempt to modify the information protected by the lock bit. If the information is changed, implement a design fix. Retest. Also, attempt to indirectly clear the lock bit or bypass it.

Real-World Examples (4)

CVE CVSS EPSS KEV
CVE-2022-23005 8.7 0.3%
CVE-2025-25734 6.8 0.1%
CVE-2025-25735 4.6 0.0%
CVE-2025-25733 3.5 0.0%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal