CVE-2025-55085
17.10.2025, 15:15
In NextX Duo before 6.4.4, in the HTTP client module, the network support code for Eclipse Foundation ThreadX, the parsing of HTTP header fields was missing bounds verification. A crafted server response could cause undefined behavior.Enginsight
| Vendor | Product | Version |
|---|---|---|
| eclipse | threadx_netx_duo | 𝑥 < 6.4.4.202503 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration