drivers/wlan/wlan_mgmt,c in RT-Thread through 5.0.2 has an integer signedness error and resultant buffer overflow.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.openwall.com/lists/oss-security/2024/03/05/1 | Mailing List | 
| https://github.com/RT-Thread/rt-thread/issues/8285 | Issue Tracking | 
| https://github.com/hnsecurity/vulns/blob/main/HNS-2024-05-rt-thread.txt | Third Party Advisory | 
| https://seclists.org/fulldisclosure/2024/Mar/28 | Mailing List | 
| https://security.humanativaspa.it/multiple-vulnerabilities-in-rt-thread-rtos/ | Third Party Advisory | 
| http://www.openwall.com/lists/oss-security/2024/03/05/1 | Mailing List | 
| https://github.com/RT-Thread/rt-thread/issues/8285 | Issue Tracking | 
| https://github.com/hnsecurity/vulns/blob/main/HNS-2024-05-rt-thread.txt | Third Party Advisory | 
| https://seclists.org/fulldisclosure/2024/Mar/28 | Mailing List | 
| https://security.humanativaspa.it/multiple-vulnerabilities-in-rt-thread-rtos/ | Third Party Advisory | 
Configurations
                    History
                    30 Apr 2025, 16:48
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www.openwall.com/lists/oss-security/2024/03/05/1 - Mailing List | |
| References | () https://github.com/RT-Thread/rt-thread/issues/8285 - Issue Tracking | |
| References | () https://github.com/hnsecurity/vulns/blob/main/HNS-2024-05-rt-thread.txt - Third Party Advisory | |
| References | () https://seclists.org/fulldisclosure/2024/Mar/28 - Mailing List | |
| References | () https://security.humanativaspa.it/multiple-vulnerabilities-in-rt-thread-rtos/ - Third Party Advisory | |
| First Time | Rt-thread rt-thread Rt-thread | |
| CPE | cpe:2.3:a:rt-thread:rt-thread:*:*:*:*:*:*:*:* | 
Information
                Published : 2024-03-27 03:15
Updated : 2025-04-30 16:48
NVD link : CVE-2024-25388
Mitre link : CVE-2024-25388
CVE.ORG link : CVE-2024-25388
JSON object : View
Products Affected
                rt-thread
- rt-thread
CWE
                
                    
                        
                        CWE-195
                        
            Signed to Unsigned Conversion Error
