PT-2026-105046 · Azure Linux · Usbredir
Published
2026-09-21
·
Updated
2026-09-21
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
An out-of-bounds write flaw was found in usbredir. Starting an isochronous OUT stream with a transfer count of 1 leaves the stream's single transfer buffer permanently unsubmitted, defeating the bounds check in usbredirhost iso packet() and allowing a usbredir peer to write past the end of the packet descriptor array on every subsequent isochronous packet.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Usbredir