{"id":"CVE-2025-55089","title":"In FileX before 6.4.2, the file support module for Eclipse Foundation ThreadX, there was a possible buffer overflow in the FileX RAM disk driver","summary":"In FileX before 6.4.2, the file support module for Eclipse Foundation ThreadX, there was a possible buffer overflow in the FileX RAM disk driver. It could cause a remote execurtion after receiving a crafted sequence of packets","severity":"critical","cvss":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-119"],"vendor":"eclipse","product":"threadx_filex","affected":["threadx_filex < 6.4.2"],"patched":["threadx_filex 6.4.2"],"published":"2025-10-16","updated":"2026-10-08","sourceUpdated":"2026-10-08T11:10:00.250","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-55089","references":[{"url":"https://github.com/eclipse-threadx/filex/security/advisories/GHSA-467v-6j75-3j7g","label":"emo@eclipse.org"}],"tags":["nvd"],"epss":0.00512,"epssPercentile":0.41736,"ingestedAt":"2026-10-08T11:31:27.449Z","slug":"CVE-2025-55089","body":"## Overview\n\nIn FileX before 6.4.2, the file support module for Eclipse Foundation ThreadX, there was a possible buffer overflow in the FileX RAM disk driver. It could cause a remote execurtion after receiving a crafted sequence of packets\n\n## Affected\n\n- `threadx_filex < 6.4.2`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `threadx_filex 6.4.2`","depth":"midnight","depthScore":54,"depthScoreParts":{"impact":53.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}