CNNVD-202510-2249 Information

CNNVD ID

CNNVD-202510-2249

CVE-2025-55080

  • CNNVD Published: 2025-10-15

Description (Chinese)

Eclipse ThreadX RTOS是Eclipse ThreadX公司的专为深度嵌入式应用程序设计的高级实时操作系统 (RTOS)。 Eclipse ThreadX RTOS 6.4.3之前版本存在安全漏洞,该漏洞源于内存保护启用时系统调用参数验证不足,可能导致任意内存读写。

Description (English)

Eclipse ThreadX RTOS is an advanced real-time operating system (RTOS) designed by Eclipse ThreadX for deep embedded applications. There was a security loophole in the previous version of Eclipse ThreadX RTOS 6.4.3, which stemmed from inadequate verification of the system ’ s call parameters when memory protection was enabled, which could lead to any memory reading and writing.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Eclipse ThreadX

Published

2025-10-15

Last Modified

2026-02-24

References

https://github.com/eclipse-threadx/threadx/security/advisories/GHSA-76hh-wrj5-hr2v https://access.redhat.com/security/cve/cve-2025-55080

Patch

https://github.com/eclipse-threadx/threadx/releases

Share on: