7.5

CVE-2024-51564

bhyve(8) infinite loop in the hda audio driver

A guest can trigger an infinite loop in the hda audio driver.
Daten sind bereitgestellt durch das CVE Programm von Authorized Data Publishers (ADP) (Unstrukturiert)
Herstellerfreebsd
Produkt freebsd
Default Statusunknown
Version 13.3
Version < 13.3_p8
Status affected
Herstellerfreebsd
Produkt freebsd
Default Statusunknown
Version 13.4
Version < 13.4_p2
Status affected
Herstellerfreebsd
Produkt freebsd
Default Statusunknown
Version 14.1
Version < 14.1_p6
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.13% 0.319
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-1285 Improper Validation of Specified Index, Position, or Offset in Input

The product receives input that is expected to specify an index, position, or offset into an indexable resource such as a buffer or file, but it does not validate or incorrectly validates that the specified index/position/offset has the required properties.