CVE-2024-25394: Rt-Thread

Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.

A buffer overflow occurs in utilities/ymodem/ry_sy.c in RT-Thread through 5.0.2 because of an incorrect sprintf call or a missing '\0' character.

Affected products

  • Rt-Thread Rt-Thread: up to and including 5.0.2

Published 2024-03-27. Last modified 2026-06-17.