Description

Espressif ESP-IDF USB Host HID (Human Interface Device) Driver allows access to HID devices. Prior to 1.1.0, usb_class_request_get_descriptor() frees and reallocates hid_device->ctrl_xfer when an oversized descriptor is requested but continues to use the stale local pointer, leading to an immediate use-after-free when processing attacker-controlled Report Descriptor lengths. This vulnerability is fixed in 1.1.0.

INFO

Published Date :

2026-01-12T17:23:19.393Z

Last Modified :

2026-01-12T18:39:37.514Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-68656 vulnerability.

Vendors Products
Espressif
  • Esp-usb
  • Usb Host Hid Driver

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact