Home

Description

A denial-of-service vulnerability exists in the NetX IPv6 component functionality of Eclipse ThreadX NetX Duo. A specially crafted network packet of "Packet Too Big" with more than 15 different source address can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

PUBLISHED Reserved 2025-08-06 | Published 2026-01-27 | Updated 2026-01-27 | Assigner eclipse




HIGH: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-400 Uncontrolled Resource Consumption

CWE-404 Improper Resource Shutdown or Release

CWE-770 Allocation of Resources Without Limits or Throttling

Product status

Default status
unaffected

Any version
affected

Credits

Haja Mohideen M finder

References

github.com/...etxduo/security/advisories/GHSA-f3rx-xrwm-q2rf

cve.org (CVE-2025-55102)

nvd.nist.gov (CVE-2025-55102)

Download JSON