See how nuttx compares to other vendors in security performance
in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.
An issue was discovered in NuttX before 7.27. The function netlibparsehttpurl() in apps/netutils/netlib/netlibparsehttpurl.c mishandles URLs longer than hostlen bytes (in the webclient, this is set by default to 40), leading to an Infinite Loop. The attack vector is the Location header of an HTTP 3xx response.