CVE-2020-11899: Treck TCP/IP stack Out-of-Bounds Read Vulnerability

Medium severity, CVSS 5.4. Actively exploited: in CISA KEV since 2022-03-03. EPSS: 18.4% chance of exploitation in the next 30 days.

The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.

Affected products

  • Dell Wyse 5030 Firmware: affected versions not specified
  • Dell Wyse 5050 All-In-One Firmware: affected versions not specified
  • Dell Wyse 7030 Firmware: affected versions not specified
  • Treck Tcp/ip: before 6.0.1.66 (fixed in 6.0.1.66)

Published 2020-06-17. Last modified 2026-06-17.