CVE-2025-5867
Severity CVSS v4.0:
HIGH
Type:
CWE-404
Improper Resource Shutdown or Release
Publication date:
09/06/2025
Last modified:
11/07/2025
Description
A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto of the file rt-thread/components/lwp/lwp_syscall.c. The manipulation of the argument to leads to null pointer dereference.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
8.00
Severity 3.x
HIGH
Base Score 2.0
7.70
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:rt-thread:rt-thread:5.1.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



