Beveiligingsadvies

CVE-2025-55085

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-10-17 14:22:28
Laatst bijgewerkt 2025-10-20 18:42:08
Toegewezen door eclipse
CVSS-score 8.8
Status PUBLISHED

Beschrijving

In NextX Duo before 6.4.4, in the HTTP client module, the network support code for Eclipse Foundation ThreadX, the parsing of HTTP header fields was missing bounds verification. A crafted server response could cause undefined behavior.