ZeroHour

Vulnerabilities

17 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-6693
A vulnerability, which was classified as critical, was found in RT-Thread up to 5.1.0.

A vulnerability, which was classified as critical, was found in RT-Thread up to 5.1.0. This affects the function sys_device_open/sys_device_read/sys_device_control/sys_device_init/sys_device_close/sys_device_write of the file components/drivers/core/device.c. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The vendor was contacted early about this disclosure but did not respond in any way.

NVD description · AI analysis pending
8.5<1% PoC
  • rt-thread rt-thread
CVE-2025-5867
+4 in the same advisory: …5868 …5865 …5866 …5869
A vulnerability classified as critical was found in RT-Thread 5.1.0.

A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto of the file rt-thread/components/lwp/lwp_syscall.c. The manipulation of the argument to leads to null pointer dereference.

NVD description · AI analysis pending
8.61% PoC
  • rt-thread rt-thread
CVE-2025-1115
A vulnerability classified as problematic was found in RT-Thread up to 5.1.0.

A vulnerability classified as problematic was found in RT-Thread up to 5.1.0. Affected by this vulnerability is the function sys_device_close/sys_device_control/sys_device_find/sys_device_init/sys_device_open/sys_device_read/sys_device_register/sys_device_write/sys_event_delete/sys_event_recv/sys_event_send/sys_mb_delete/sys_mb_recv/sys_mb_send/sys_mb_send_wait/sys_mq_recv/sys_mq_send/sys_mq_urgent/sys_mutex_delete/sys_mutex_release/sys_mutex_take/sys_rt_timer_control/sys_rt_timer_delete/sys_rt_timer_start/sys_rt_timer_stop/sys_sem_delete/sys_sem_release/sys_sem_take/sys_shmat/sys_shmdt/sys_thread_create/sys_thread_delete/sys_thread_startup/sys_timer_delete/sys_timer_gettime/sys_timer_settime of the file rt-thread/components/lwp/lwp_syscall.c. The manipulation of the argument arg[0] leads to information disclosure. An attack has to be approached locally.

NVD description · AI analysis pending
4.8<1% PoC
  • rt-thread rt-thread
CVE-2024-25393
A stack buffer overflow occurs in net/at/src/at_server.c in RT-Thread through 5.0.2.

A stack buffer overflow occurs in net/at/src/at_server.c in RT-Thread through 5.0.2.

NVD description · AI analysis pending
9.8
group max
1%
  • rt-thread rt-thread