vulnerability
FreeBSD: VID-32c92a75-aa71-11ea-92ab-00163e433440 (CVE-2020-7456): FreeBSD -- USB HID descriptor parsing error
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Jun 9, 2020 | Jun 10, 2020 | Dec 10, 2025 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 9, 2020
Added
Jun 10, 2020
Modified
Dec 10, 2025
Description
Problem Description: If the push/pop level of the USB HID state is not restored within the processing of the same HID item, an invalid memory location may be used for subsequent HID item processing. Impact: An attacker with physical access to a USB port may be able to use a specially crafted USB device to gain kernel or user-space code execution.
Solutions
freebsd-upgrade-base-12_1-release-p6freebsd-upgrade-base-11_3-release-p10
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.