ThreatCluster

Apache NuttX Vulnerability Allows Remote System Crashes

First seen 2 Jan 2026, 09:26 UTC GbhackersCyberpressCybersecuritynews 35

Article Content

Browse articles
ThreatCluster

A use-after-free vulnerability in Apache NuttX RTOS has been disclosed, allowing remote attackers to crash embedded systems. This flaw, tracked as CVE-2025-48769, affects multiple versions of NuttX and poses risks for users running network-exposed services. The vulnerability was publicly disclosed on December 31, 2025.