CWE-1190 - CERT CVE

CWE-1190 - DMA Device Enabled Too Early in Boot Phase

The product enables a Direct Memory Access (DMA) capable device before the security configuration settings are established, which allows an attacker to extract data from or gain privileges on the product.

CAPEC ID Naziv
CAPEC-180 Exploiting Incorrectly Configured Access Control Security Levels