-

CVE-2026-43430

usb: yurex: fix race in probe

In the Linux kernel, the following vulnerability has been resolved:

usb: yurex: fix race in probe

The bbu member of the descriptor must be set to the value
standing for uninitialized values before the URB whose
completion handler sets bbu is submitted. Otherwise there is
a window during which probing can overwrite already retrieved
data.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < a7934d7202a39c3160aa30521c382c7b744ae4a2
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < a8b3b3d730acea1640bc89465f2832cf06a1e13a
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < 687d26d43a5aaf44323ce7d601cf242bb87e9559
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < 939e3d17b843b0bae70467fef4481069d73c8520
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < 3cec135415a89723e2d38e1c8cc5098203355965
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < a41d3d9202e951995cfac6248c565423079c71fa
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < af83e92c329f11139d5eea2b5b7b83c26c3f67e7
Status affected
Version 6bc235a2e24a5ef677daee3fd4f74f6cd643e23c
Version < 7a875c09899ba0404844abfd8f0d54cdc481c151
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 2.6.37
Status affected
Version 0
Version < 2.6.37
Status unaffected
Version <= 5.10.*
Version 5.10.253
Status unaffected
Version <= 5.15.*
Version 5.15.203
Status unaffected
Version <= 6.1.*
Version 6.1.167
Status unaffected
Version <= 6.6.*
Version 6.6.130
Status unaffected
Version <= 6.12.*
Version 6.12.78
Status unaffected
Version <= 6.18.*
Version 6.18.19
Status unaffected
Version <= 6.19.*
Version 6.19.9
Status unaffected
Version <= *
Version 7.0
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.094
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.