CVE-2025-55094: Potential out-of-bounds read in _nx_icmpv6_validate_options()
Published Oct 17, 2025
·Updated
In NetX Duo before 6.4.4, the networking support module for Eclipse Foundation ThreadX, there was a potential out of bound read issue in nxicmpv6validateoptions() when handling a packet with ICMP6 options.
Affected Software
2 affected components
Eclipse Foundation NetX Duo<6.4.4
Eclipse threadx NetX Duo<6.4.4.202503
Event History
Oct 17, 2025
CVE Published
via MITRE·05:29 AM
Data Sourced
via MITRE·05:29 AM
DescriptionWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-55094?
The severity of CVE-2025-55094 is classified as a medium risk due to a potential out of bounds read issue.
2
How do I fix CVE-2025-55094?
To fix CVE-2025-55094, upgrade to NetX Duo version 6.4.4 or later.
3
What is the impact of CVE-2025-55094?
The impact of CVE-2025-55094 could allow an attacker to exploit the out of bounds read, potentially leading to information disclosure.
4
Which versions of NetX Duo are affected by CVE-2025-55094?
NetX Duo versions prior to 6.4.4 are affected by CVE-2025-55094.
5
Is there a workaround for CVE-2025-55094?
No specific workaround is available for CVE-2025-55094; upgrading to the patched version is recommended.