CVE 2.4 LOW

Potential out-of-bounds read in _ux_host_class_audio_streaming_sampling_get()_CVE-2025-55097

2.4 / 10
LOW
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Description

In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio_streaming_sampling_get() when parsing a descriptor of an USB streaming device.

Basic Information

ID CVE-2025-55097
Source eclipse
Published Oct 17, 2025 at 05:35

Affected Product

Vendor Eclipse Foundation
Product USBX
Affected Versions Eclipse Foundation USBX 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.