CVE-2024-41721

EUVD-2024-39165
An insufficient boundary validation in the USB code could lead to an out-of-bounds read on the heap, which could potentially lead to an arbitrary write and remote code execution.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
freebsdfreebsd
14.1 ≤
𝑥
< 14.1_p5
ADP
freebsdfreebsd
14.0 ≤
𝑥
< 14.0_p11
ADP
freebsdfreebsd
13.4 ≤
𝑥
< 13.4_p1
ADP
freebsdfreebsd
13.3 ≤
𝑥
< 13.3_p7
ADP