CVE-2025-55102: Eclipse Threadx Netx Duo

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A denial-of-service vulnerability exists in the NetX IPv6 component functionality of Eclipse ThreadX NetX Duo. A specially crafted network packet of "Packet Too Big" with more than 15 different source address can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

Affected products

  • Eclipse Threadx Netx Duo: before 6.4.5.202504 (fixed in 6.4.5.202504)

Published 2026-01-27. Last modified 2026-06-17.