Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-64p6-7v6x-gpw9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-STABLE before r362167, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, missing length validation code common to mulitple USB network drivers allows a malicious USB device to write beyond the end of an allocated network packet buffer.

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-STABLE before r362167, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, missing length validation code common to mulitple USB network drivers allows a malicious USB device to write beyond the end of an allocated network packet buffer.

EPSS

Процентиль: 19%
0.00061
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.8
nvd
больше 5 лет назад

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-STABLE before r362167, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, missing length validation code common to mulitple USB network drivers allows a malicious USB device to write beyond the end of an allocated network packet buffer.

CVSS3: 6.8
debian
больше 5 лет назад

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-ST ...

EPSS

Процентиль: 19%
0.00061
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-20