T.Op.Denial.1
|
Low
|
Likely
|
An entity enters access control attributes related to specific content resulting in denying access to consumers who should be authorized for that information object.
|
T.Op.Denial.2
|
Low
|
Likely
|
An entity enters improper value in the priority attribute related to specific content resulting in reduced distribution efficiency for that information object.
|
T.Op.Denial.3
|
High
|
Likely
|
An entity creates excessive volume of information objects resulting in resource exhaustion (e.g., storage space) resulting in a denial of service.
|
T.Op.Denial.4
|
Medium
|
Likely
|
An entity removes or changes endorsements on an information object in an unauthorized manner with the intent to stop the publication of the information object.
|
T.Op.Denial.5
|
High
|
Unusual
|
An entity creates excessive volume of endorsements resulting in resource exhaustion (e.g., storage space) resulting in a denial of service.
|
T.Op.Denial.6
|
High
|
Unlikely
|
An entity copies the information object to an excessive volume of ownership types resulting in resource exhaustion (e.g., storage space).
|
T.Op.Denial.7
|
High
|
Unlikely
|
An entity copies an excessive volume of the information object to the same ownership type resulting in resource exhaustion (e.g., storage space, processor resources [race condition]).
|
T.Op.Denial.8
|
Low
|
Likely
|
An entity enters (regrades to) incorrect values in the access control attributes that overly restrict access to the information content resulting in denial of service. Incorrect values could be as a result of:
|
T.Op.Denial.9
|
High
|
Unlikely
|
An entity publishes the information object to an excessive volume of ownership types resulting in resource exhaustion (e.g., storage space).
|
T.Op.Denial.10
|
High
|
Unlikely
|
An entity publishes an excessive volume of the information object to the same ownership type resulting in resource exhaustion (e.g., storage space, processor resources [race condition]).
|
T.Op.Denial.11
|
Medium
|
Likely
|
An entity deletes an object it is not authorized to delete resulting in denial of service.
|
T.Op.Denial.12
|
Low
|
Likely
|
An AMI entity deletes an object it is authorized to delete resulting in denial of service.
|
T.Op.Denial.13
|
Low
|
Unlikely
|
An AMI entity mounts an attack against AMI computing resources that results in task overloading.
|
T.Op.Denial.14
|
Medium
|
Unlikely
|
An entity prevents the decryption of information objects resulting in no information being displayed, resulting in denial of service.
|
T.Op.Denial.15
|
Medium
|
Unusual
|
An entity prevents display content from being displayed resulting in denial of service.
|
T.Op.Denial.16
|
Low
|
Unusual
|
An entity causes an authorized user to view an improper/incorrect AMI directory structure resulting in denial by failing to connect to the intended AMI directory.
|
|