CWE-1260: Improper Handling of Overlap Between Protected Memory Ranges

low-risk

The product allows address regions to overlap, which can result in the bypassing of intended memory protection.

Abstraction: Base

Common Consequences

Confidentiality Modify Memory

Detection Methods

Manual Analysis

Create a high privilege memory block of any arbitrary size. Attempt to create a lower privilege memory block with an overlap of the high privilege memory block. If the creation attempt works, fix the hardware. Repeat the test.

Real-World Examples (10)

CVE CVSS EPSS KEV
CVE-2019-1164 7.8 0.7%
CVE-2024-4778 9.8 0.4%
CVE-2025-1937 7.5 0.2%
CVE-2022-27813 8.1 0.0%
CVE-2019-25570 5.5 0.0%
CVE-2019-25559 5.5 0.0%
CVE-2019-25602 5.5 0.0%
CVE-2018-25238 6.2 0.0%
CVE-2018-25240 6.2 0.0%
CVE-2019-25592 6.2 0.0%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal