Improper mstatus.SUM bit retention (non-zero) in Open-Source RISC-V Processor commit f517abb violates privileged spec constraints, enabling potential physical memory access attacks.
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.