#VU117415 Out-of-bounds read in NetX Duo - CVE-2025-55086
Published: October 21, 2025
NetX Duo
Eclipse ThreadX
Description
The vulnerability allows a remote attacker to compromise the target system.
The vulnerability exists due to a boundary condition in the dhcpv6 client when extracting the server DUID from the server reply. A remote attacker can trigger an out-of-bounds read error to cause system instability and perform a denial of service (DoS) attack.