Worker Stall and Out-of-bounds Read Vulnerability in Eclipse ThreadX NetX Duo
CVE-2026-102726
6MEDIUM
What is CVE-2026-102726?
This vulnerability arises from unbounded parsing of the Point-to-Point Protocol Internet Protocol Control Protocol (PPPoE IPCP) options within Eclipse ThreadX NetX Duo. The flawed handling of these options can lead to a worker thread stall and potential out-of-bounds read, which may compromise the integrity of the affected system, leading to disruptions in service and exposing sensitive information.
Affected Version(s)
NetX Duo 0 <= 6.5.1.202602
