{"id":"CVE-2025-47868","summary":"Apache NuttX RTOS: tools/bdf-converter.: tools/bdf-converter: Fix loop termination condition.","details":"Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered in tools/bdf-converter font conversion utility that is part of Apache NuttX RTOS repository. This standalone program is optional and neither part of NuttX RTOS nor Applications runtime, but active bdf-converter users may be affected when this tool is exposed to external provided user data data (i.e. publicly available automation).\n\nThis issue affects Apache NuttX: from 6.9 before 12.9.0.\n\nUsers are recommended to upgrade to version 12.9.0, which fixes the issue.","modified":"2026-08-12T03:51:26.509335828Z","published":"2025-06-16T11:00:05.293Z","database_specific":{"cna_assigner":"apache","cwe_ids":["CWE-122","CWE-787"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/47xxx/CVE-2025-47868.json"},"references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2025/06/14/1"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/47xxx/CVE-2025-47868.json"},{"type":"ADVISORY","url":"https://lists.apache.org/thread/p4o2lcqgspx3ws1n2p4wmoqbqow1w1pw"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-47868"},{"type":"FIX","url":"https://github.com/apache/nuttx/pull/16000"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/apache/nuttx","events":[{"introduced":"27751a08f49b7ca8696bc461ad24bc1adbbc60da"},{"fixed":"7c95e3c613820adf9802ba2fea0806333c02a553"}],"database_specific":{"source":["AFFECTED_FIELD","CPE_RANGE"],"cpe":"cpe:2.3:a:apache:nuttx:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"6.9"},{"fixed":"12.9.0"}]}}],"versions":["nuttx-12.9.0-RC0","nuttx-8.2","nuttx-8.1","nuttx-7.31","nuttx-7.30","nuttx-7.29","nuttx-7.28","nuttx-7.27","nuttx-7.26","nuttx-7.25","nuttx-7.24","nuttx-7.23","nuttx-7.22","nuttx-7.21","nuttx-7.20","nuttx-7.18","nuttx-7.17","nuttx-7.16","nuttx-7.15","nuttx-7.14","nuttx-7.13","nuttx-7.12","nuttx-7.11","nuttx-7.10","nuttx-7.9","nuttx-7.8","nuttx-7.6","nuttx-7.5","nuttx-7.4","nuttx-7.3","nuttx-7.2","nuttx-7.1","nuttx-6.33","nuttx-6.32","nuttx-6.31","nuttx-6.30","nuttx-6.29","nuttx-6.28","nuttx-6.27","nuttx-6.26","nuttx-6.25","nuttx-6.24","nuttx-6.23","nuttx-6.22","nuttx-6.21","nuttx-6.20","nuttx-6.19","nuttx-6.18","nuttx-6.17","nuttx-6.16","nuttx-6.15","nuttx-6.14","nuttx-6.13","nuttx-6.12","nuttx-6.11","nuttx-6.10","nuttx-6.9"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-47868.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}