← Back to CVE search

CVE-2026-43430

Yurex

Description

In the Linux kernel, the following vulnerability has been resolved: usb: yurex: fix race in probe The bbu member of the descriptor must be set to the value standing for uninitialized values before the URB whose completion handler sets bbu is submitted. Otherwise there is a window during which probing can overwrite already retrieved data.

CVSS 4.7EPSS 0.089%Risk 0.47
View source
Published
2026-05-08 15:16:55
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Operating systems
Linux