CVE-2020-11898

CRITICAL

Treck TCP/IP < 6.0.1.66 - Information Disclosure via IPv4/ICMPv4 Length Parameter Inconsistency

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2020-11898. PoCs published by Ransc0rp1on.

AI-analyzed exploit summary This repository contains a Python-based scanner for detecting CVE-2020-11898 (Ripple20), a vulnerability in the Treck TCP/IP stack. The tool sends crafted fragmented IP-in-IP packets and analyzes ICMP responses to determine if the target is vulnerable to heap data leakage.

Description

The Treck TCP/IP stack before 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote attackers to trigger an information leak.

Exploits (1)

nomisec SCANNER
by Ransc0rp1on · poc
https://github.com/Ransc0rp1on/Ripple20

This repository contains a Python-based scanner for detecting CVE-2020-11898 (Ripple20), a vulnerability in the Treck TCP/IP stack. The tool sends crafted fragmented IP-in-IP packets and analyzes ICMP responses to determine if the target is vulnerable to heap data leakage.

Classification
Scanner 95%
Attack Type
Info Leak
Complexity
Moderate
Reliability
Reliable
Target: Treck TCP/IP stack
No auth needed
Prerequisites: root/administrator privileges · Scapy library · Python 3.7+ · network connectivity to target
devstral-2 · analyzed Jun 15, 2026 Full analysis →

References (10)

Core 10
Core References
Mitigation, Third Party Advisory, US Government Resource x_refsource_misc
https://www.kb.cert.org/vuls/id/257161/
Product, Vendor Advisory x_refsource_misc
https://www.treck.com
Third Party Advisory x_refsource_misc
https://jsof-tech.com/vulnerability-disclosure-policy/
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
https://www.kb.cert.org/vuls/id/257161
Exploit, Third Party Advisory x_refsource_misc
https://www.jsof-tech.com/ripple20/
Vendor Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20200625-0006/

Scores

CVSS v3 9.1
EPSS 0.1873
EPSS Percentile 96.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Details

CWE
CWE-119
Status published
Products (1)
treck/tcp\/ip < 6.0.1.66
Published Jun 17, 2020
Tracked Since Feb 18, 2026