CVE-2026-102762
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The NetX Duo MQTT client leaks the packet carrying a malformed PUBLISH message. Each malformed PUBLISH costs one packet, or one chain of packets, from the network driver's receive pool, and nothing returns it. A peer that can deliver a few dozen such messages exhausts the pool and stops all inbound network traffic on the device until it is rebooted.
| CWE | CWE-401 |
| Vendor | eclipse foundation |
| Product | netx duo |
| Published | Sep 29, 2026 |
Stay Ahead of the Next One
Get instant alerts for eclipse foundation netx duo
Be the first to know when new unknown vulnerabilities affecting eclipse foundation netx duo are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Eclipse Foundation / NetX Duo
6.0 โค 6.5.1.202602
References
Credits
๐ leginwos adawn0106