CVE-2025-55094: Eclipse Threadx Netx Duo

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in _nx_icmpv6_validate_options() when handling a packet with ICMP6 options.

Affected products

  • Eclipse Threadx Netx Duo: before 6.4.4.202503 (fixed in 6.4.4.202503)

Published 2025-10-17. Last modified 2026-10-09.