Denial of Service Vulnerability in Apache NuttX RTOS Affecting File Systems
CVE-2025-48768
What is CVE-2025-48768?
A vulnerability exists in the Apache NuttX RTOS within the fs/inode/fs_inoderemove code, which can lead to the removal of root filesystem inodes. This issue can trigger a debug assert that is turned off by default or cause a NULL pointer dereference. The impact varies with the target architecture and can potentially result in a denial of service, particularly affecting users with filesystem based services who have write access exposed over the network, such as FTP. Users are strongly advised to upgrade to version 12.10.0 to mitigate this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Apache NuttX RTOS 10.0.0 < 12.10.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved