CWE-514: Covert Channel

Class Incomplete Simple

CWE版本: 4.18

更新日期: 2025-09-09

弱点描述

A covert channel is a path that can be used to transfer information in a way not intended by the system's designers.

扩展描述

Typically the system has not given authorization for the transmission and has no knowledge of its occurrence.

常见后果

影响范围: Confidentiality Access Control

技术影响: Read Application Data Bypass Protection Mechanism

检测方法

方法: Architecture or Design Review

有效性: SOAR Partial

引入模式

阶段 说明
Implementation -
Operation -

分类映射

分类名称 条目ID 条目名称 映射适配度
Landwehr - Covert Channel -
关键信息

CWE ID: CWE-514

抽象级别: Class

结构: Simple

状态: Incomplete

相关弱点
相关攻击模式
CAPEC-463