CVE-2020-11901: Treck Tcp/ip

Critical severity, CVSS 9.0. EPSS: 21.1% chance of exploitation in the next 30 days.

The Treck TCP/IP stack before 6.0.1.66 allows Remote Code execution via a single invalid DNS response.

Affected products

  • Treck Tcp/ip: before 6.0.1.66 (fixed in 6.0.1.66)

Published 2020-06-17. Last modified 2026-06-17.