NuttX is a lightweight, modular real-time operating system designed for embedded and IoT devices with constrained resources. The vendor's observed vulnerability exposure centers on loop-control issues that can result in infinite or unreachable-exit conditions, a characteristic weakness in resource-limited kernel and firmware codebases. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nuttx over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-20578HIGH An issue was discovered in NuttX before 7.27. The function netlib_parsehttpurl() in apps/netutils/netlib/netlib_parsehttpurl.c mishandles URLs longer than hostlen bytes (in the web | Dec 28, 2018 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nuttx.
Media articles that mention a CVE ID that affects a product developed by Nuttx — matched by CVE ID, not by vendor name.