https://seclists.org/oss-sec/2025/q4/355: CVE-2025-48768: Apache NuttX RTOS: fs/inode: fs_inodemove root inode moval
Published Dec 31, 2025
·Updated
Affected Software
1 affected component
Apache NuttX RTOS<12.10.0
Frequently Asked Questions
1
What is the severity of CVE-2025-48768?
The severity of CVE-2025-48768 is classified as low.
2
What versions of Apache NuttX RTOS are affected by CVE-2025-48768?
CVE-2025-48768 affects Apache NuttX RTOS versions 10.0.0 before 12.10.0.
3
What is the nature of the vulnerability in CVE-2025-48768?
CVE-2025-48768 is a release of Invalid Pointer or Reference vulnerability affecting the fs/inode/fs_inoderemove code.
4
How do I fix CVE-2025-48768?
To fix CVE-2025-48768, upgrade Apache NuttX RTOS to version 12.10.0 or later.
5
What can happen if CVE-2025-48768 is exploited?
Exploitation of CVE-2025-48768 can lead to root filesystem inode removal, triggering a debug assert.