NetX Duo HTTP Client Module Out-of-Bounds Read Vulnerability

Vulnerability

A high-severity out-of-bounds read vulnerability has been identified in the HTTP client module of NetX Duo, prior to version 6.4.4. The issue arises from the lack of bounds checking when parsing HTTP header fields, allowing a crafted server response to manipulate pointer values and potentially lead to undefined behavior, such as memory corruption or system crashes.

Impact

Exploitation of this vulnerability could cause system crashes or memory corruption, leading to undefined behavior.

Remediation

Users can upgrade to NetX Duo version 6.4.4 or later to address this vulnerability.

Added: Oct 17, 2025, 3:18 PM
Updated: Oct 17, 2025, 3:18 PM

Vulnerability Rating

Custom Algorithm
spread
9.8
impact
5.0
exploitability
8.1
remediation
7.7
relevance
0.8
threat
0.0
urgency
2.9
incentive
10.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.