CVE-2025-55096

Severity CVSS v4.0:
LOW
Type:
CWE-191 Integer Underflow (Wrap or Wraparound)
Publication date:
17/10/2025
Last modified:
23/10/2025

Description

In USBX before 6.4.3, the USB support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _ux_host_class_hid_report_descriptor_get()<br />  when parsing a descriptor of an USB HID device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:eclipse:threadx_usbx:*:*:*:*:*:*:*:* 6.4.3.202503 (excluding)