CyberRota Analysis
AI-GeneratedThe Windows USB Audio Class driver (usbaudio.sys) contains an out-of-bounds read vulnerability that can be exploited by an unauthorized attacker with physical access to the system, potentially leading to information disclosure. Organizations utilizing Windows systems, especially those with accessible USB ports, should prioritize addressing this vulnerability to mitigate risks associated with physical attacks.
CVE
CVE-2026-49794
Severity
MEDIUM
CVSS
4.6
EPSS
0.35%
Windows
Original NVD Description
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
Related CVEs
Other vulnerabilities affecting the same vendor(s)