CVE-2020-11905
Description
The Treck TCP/IP stack before 6.0.1.66 has a DHCPv6 Out-of-bounds Read.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
An out-of-bounds read vulnerability in the Treck TCP/IP stack's DHCPv6 component can leak memory contents to a remote attacker.
Vulnerability
CVE-2020-11905 is an out-of-bounds read vulnerability in the DHCPv6 component of the Treck TCP/IP stack before version 6.0.1.66 [1][2][3]. The bug exists in the stack's handling of specially crafted DHCPv6 messages, where the code fails to properly validate length fields before reading packet data, leading to a read beyond the allocated buffer boundary.
Exploitation
An attacker can trigger the vulnerability by sending a crafted DHCPv6 packet to a device running an affected version of the Treck stack [2][3]. No authentication is required, and the attacker only needs network access to send the malicious packet. The out-of-bounds read occurs during parsing of the DHCPv6 message before any validation of the offensive length field.
Impact
A successful out-of-bounds read can cause a system crash (denial of service) or leak sensitive memory contents to the attacker [2][3]. The exact impact depends on the specific memory layout and what data resides adjacent to the parsed DHCPv6 buffer. In some configurations, this could lead to information disclosure about the device or its operations.
Mitigation
Treck released version 6.0.1.67 to address this vulnerability [2][3]. Users should update their Treck IP stack to version 6.0.1.67 or later. Downstream device vendors should be contacted for patched firmware. As a workaround, network administrators can use deep packet inspection to block anomalous DHCPv6 traffic where feasible [2][3].
AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Treck/TCP/IP stackdescription
- Range: <6.0.1.66
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-treck-ip-stack-JyBQ5GyCmitrevendor-advisoryx_refsource_CISCO
- www.kb.cert.org/vuls/id/257161mitrethird-party-advisoryx_refsource_CERT-VN
- www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-006.txtmitrex_refsource_CONFIRM
- jsof-tech.com/vulnerability-disclosure-policy/mitrex_refsource_MISC
- security.netapp.com/advisory/ntap-20200625-0006/mitrex_refsource_CONFIRM
- www.dell.com/support/article/de-de/sln321836/dell-response-to-the-ripple20-vulnerabilitiesmitrex_refsource_MISC
- www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.htmlmitrex_refsource_CONFIRM
- www.jsof-tech.com/ripple20/mitrex_refsource_MISC
- www.kb.cert.org/vuls/id/257161/mitrex_refsource_MISC
- www.treck.commitrex_refsource_MISC
News mentions
0No linked articles in our index yet.