📦 Threadx Usbx

by Eclipse

🔍 What is Threadx Usbx?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-55100

CRITICAL CVSS 9.1 Oct 17, 2025

This vulnerability allows attackers to read memory beyond allocated boundaries in USBX's audio class parsing function. It affects systems using Eclipse ThreadX with USBX before version 6.4.3, potentia...

CVE-2022-29246

CRITICAL CVSS 9.8 May 24, 2022

CVE-2022-29246 is a buffer overflow vulnerability in Azure RTOS USBX's DFU UPLOAD functionality that allows attackers to bypass security features or execute arbitrary code. It affects all systems usin...

CVE-2023-48695

HIGH CVSS 7.3 Dec 5, 2023

This vulnerability allows remote code execution through out-of-bounds write flaws in Azure RTOS USBX's USB host and device classes, specifically affecting CDC ECM and RNDIS functionality. Attackers ca...

CVE-2025-55099

MEDIUM CVSS 6.1 Oct 17, 2025

This vulnerability allows an attacker to trigger an out-of-bounds read in USBX's audio host class implementation when parsing malicious USB descriptors. Systems using Eclipse ThreadX with USBX before ...

CVE-2025-55097

MEDIUM CVSS 6.1 Oct 17, 2025

This vulnerability allows an attacker to read memory beyond the intended buffer boundaries when parsing USB audio streaming device descriptors. It affects systems using USBX versions before 6.4.3 in E...

CVE-2025-55098

MEDIUM CVSS 6.1 Oct 17, 2025

This vulnerability allows an attacker to trigger an out-of-bounds read in USBX's audio device parsing function when a malicious USB audio device is connected. It affects systems using Eclipse ThreadX ...