Description
A denial-of-service vulnerability exists in the NetX IPv6 component functionality of Eclipse ThreadX NetX Duo. A specially crafted network packet of "Packet Too Big" with more than 15 different source address can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.
Problem types
CWE-400 Uncontrolled Resource Consumption
CWE-404 Improper Resource Shutdown or Release
CWE-770 Allocation of Resources Without Limits or Throttling
Product status
Any version
Credits
Haja Mohideen M
References
github.com/...etxduo/security/advisories/GHSA-f3rx-xrwm-q2rf