SI-2(6) - Flaw Remediation | Removal of Previous Versions of Software and Firmware

Remove previous versions of [Assignment: organization-defined software and firmware components] after updated versions have been installed.


ID: SI-2(6)
Enhancement of : SI-2

Space Segment Guidance

Removing superseded software/firmware reduces attack surface and confusion during anomalies. Consider retaining only what’s needed for safe rollback (e.g., golden + current) and retiring older images, keys, and parameter sets from staging and on-orbit stores. Where supported, use cryptographic erasure or verified wipe for decommissioned artifacts. Telemetry that enumerates what remains (image IDs, table hashes, key indices) helps operators verify cleanup across intermittent links and after resets/SEUs.