Security Advisory

CVE-2025-55099

6.1
MEDIUM

Vulnerability Description

In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_audio_alternate_setting_locate() when parsing a descriptor with attacker-controlled frequency fields.
Published Date October 17, 2025
Official Source NIST NVD Advisory