VYPR

USBX

by Eclipse Foundation

CVEs (5)

  • CVE-2025-55100CriOct 17, 2025
    risk 0.59cvss 9.1epss 0.01

    In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio10_sam_parse_func() when parsing a list of sampling frequencies.

  • CVE-2025-55099MedOct 17, 2025
    risk 0.40cvss 6.1epss 0.00

    In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio_alternate_setting_locate() when parsing a descriptor with attacker-controlled frequency fields.

  • CVE-2025-55098MedOct 17, 2025
    risk 0.40cvss 6.1epss 0.00

    In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio_device_type_get() when parsing a descriptor of an USB audio device.

  • CVE-2025-55097MedOct 17, 2025
    risk 0.40cvss 6.1epss 0.00

    In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio_streaming_sampling_get() when parsing a descriptor of an USB streaming device.

  • CVE-2025-55096MedOct 17, 2025
    risk 0.40cvss 6.1epss 0.00

    In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_hid_report_descriptor_get()  when parsing a descriptor of an USB HID device.