CVE-2024-25389

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/03/2024
Last modified:
04/11/2025

Description

RT-Thread through 5.0.2 generates random numbers with a weak algorithm of "seed = 214013L * seed + 2531011L; return (seed >> 16) & 0x7FFF;" in calc_random in drivers/misc/rt_random.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rt-thread:rt-thread:*:*:*:*:*:*:*:* 5.0.2 (including)