CVE-2025-5867
A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto of the file rt-thread/components/lwp/lwp_syscall.c. The manipulation of the argument to leads to null pointer dereference.
- Affected products
- Rt-Thread
- Rt-thread
- = 5.1.0
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 1.1% (62th percentile)
- Weakness
- CWE-404, CWE-476
- NVD status
- Analyzed
- Published
- 2025-06-09
CVE-2025-5867 at NVD
1 known exploit for CVE-2025-5867
Proof-of-concept code and exploit modules indexed by Sploitus