Description
Out-of-bounds Read from Unvalidated MSRP Attribute List Length
Published: 2026-09-29
Score: 6 Medium
EPSS: n/a
KEV: No
Impact: Out-of-bounds read may expose sensitive data
Action: Patch Upstream
AI Analysis

Impact

The vulnerability lies in NetX Duo’s handling of an MSRP attribute length. The unvalidated length can cause an out-of-bounds read, exposing memory contents to an attacker. This flaw falls under CWE‑125 and can lead to information disclosure.

Affected Systems

Affected products are systems running the Eclipse Foundation NetX Duo real‑time operating system. Version information is not listed in the advisory, so any deployment of NetX Duo is potentially impacted unless later patches are applied.

Risk and Exploitability

The CVSS score of 6.0 marks the flaw as moderate severity. No EPSS data is available, and the vulnerability is not recorded in CISA KEV, indicating there is no public exploitation evidence yet. Nonetheless, an attacker who can supply or influence MSRP attributes—either through a local connection or a network interface—might exploit the out-of-bounds read. The exact attack vector is not detailed in the advisory, but it is likely to require privileged access to send crafted MSRP data.

Generated by OpenCVE AI on September 29, 2026 at 21:54 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest NetX Duo firmware or patch that contains the fix for the unvalidated MSRP length.
  • If a patch is currently unavailable, configure the system to validate MSRP attribute lengths before processing, or disable reception of MSRP data if not needed.
  • Continue monitoring for abnormal memory read attempts and verify system logs for evidence of exploitation attempts.

Generated by OpenCVE AI on September 29, 2026 at 21:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 29 Sep 2026 22:15:00 +0000

Type Values Removed Values Added
Title Unvalidated MSRP Length Causes Out‑of‑Bounds Read in NetX Duo

Tue, 29 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
Description Out-of-bounds Read from Unvalidated MSRP Attribute List Length
Weaknesses CWE-125
References
Metrics cvssV4_0

{'score': 6, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: eclipse

Published:

Updated: 2026-09-29T18:32:52.334Z

Reserved: 2026-09-29T16:15:20.006Z

Link: CVE-2026-102725

cve-icon Vulnrichment

Updated: 2026-09-29T18:32:39.096Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-29T18:17:12.093

Modified: 2026-09-29T19:17:22.960

Link: CVE-2026-102725

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-29T22:00:08Z

Weaknesses