Impact
This vulnerability is an out-of-bounds write that can corrupt adjacent memory. In the worst case, a malicious actor could use the corrupted memory to alter program flow, execute arbitrary code, or cause a denial of service by crashing the component. The weakness is identified as CWE‑787.
Affected Systems
The flaw exists in the WujekFoliarz DualSenseY‑v2 product for all releases older than 54. No other versions or additional vendors are impacted based on the current data.
Risk and Exploitability
The CVSS score is 7.8, indicating a high severity. EPSS data is unavailable, so the likelihood of current exploitation is unclear. The vulnerability is not listed in the CISA KEV catalog. Attack vector details are not explicitly documented in the description; it is inferred that an attacker with access to the vulnerable component—either locally or potentially via a network interface exposing that functionality—could trigger the out‑of‑bounds write. Given the severity and lack of mitigations, the risk remains significant until a patch is applied.
OpenCVE Enrichment