Loading HuntDB...

GHSA-fphh-2884-975g

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

ARM CMSIS RTOS2 versions prior to 2.1.3 are vulnerable to integer wrap-around inosRtxMemoryAlloc (local malloc equivalent) function, which can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or injected code execution.

Related CVEs

Key Information

GHSA ID
GHSA-fphh-2884-975g
Published
May 4, 2022 12:00 AM
Last Modified
May 14, 2022 12:03 AM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 5, 2025 6:46 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.