CVE-2020-25926: Hcc-Embedded Nichestack Tcp/ip

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

The DNS client in InterNiche NicheStack TCP/IP 4.0.1 is affected by: Insufficient entropy in the DNS transaction id. The impact is: DNS cache poisoning (remote). The component is: dns_query_type(). The attack vector is: a specific DNS response packet.

Affected products

Published 2021-08-18. Last modified 2026-06-17.