PT-2025-54474 · Apache · Apache Nuttx Rtos
Published
2025-12-31
·
Updated
2026-01-06
·
CVE-2025-48769
CVSS v2.0
8.5
High
| Vector | AV:N/AC:L/Au:S/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apache NuttX RTOS versions 7.20 through 12.10
Description
A Use After Free issue was identified in the fs/vfs/fs rename code of the Apache NuttX RTOS. The issue stems from a recursive implementation and the use of a single buffer by two different pointer variables, which allowed for arbitrary user-provided size buffer reallocation and writing to a previously freed heap chunk. In certain scenarios, this could lead to unintended virtual filesystem rename or move operation results. Users of virtual filesystem-based services with write access, particularly when exposed over a network such as FTP, are affected.
Recommendations
Upgrade to version 12.11.0 to resolve this issue.
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Nuttx Rtos