Memory Corruption Vulnerability in RT-Thread 5.1.0 by RT-Thread
CVE-2025-5869

8.6HIGH

Key Information:

Vendor

RT-Thread

Status
Vendor
CVE Published:
9 June 2025

What is CVE-2025-5869?

A vulnerability in RT-Thread 5.1.0 exists within the sys_recvfrom function found in the lwp_syscall.c file. This vulnerability arises due to improper manipulation of parameters, leading to potential memory corruption. If exploited, it could allow an attacker to manipulate system behavior or gain unauthorized access to sensitive data.

Affected Version(s)

RT-Thread 5.1.0

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Zephyr Saxon (VulDB User)
.
CVE-2025-5869 : Memory Corruption Vulnerability in RT-Thread 5.1.0 by RT-Thread