vulnerability

FreeBSD: VID-32c92a75-aa71-11ea-92ab-00163e433440 (CVE-2020-7456): FreeBSD -- USB HID descriptor parsing error

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 9, 2020
Added
Jun 10, 2020
Modified
Dec 10, 2025

Description

Problem Description: If the push/pop level of the USB HID state is not restored within the processing of the same HID item, an invalid memory location may be used for subsequent HID item processing. Impact: An attacker with physical access to a USB port may be able to use a specially crafted USB device to gain kernel or user-space code execution.

Solutions

freebsd-upgrade-base-12_1-release-p6freebsd-upgrade-base-11_3-release-p10
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.