CVE-2025-27917: Null Pointer Dereference
An issue was discovered in AnyDesk for Windows before 9.0.5, AnyDesk for macOS before 9.0.1, AnyDesk for Linux before 7.0.0, AnyDesk for iOS before 7.1.2, and AnyDesk for Android before 8.0.0. Remote Denial of Service can occur because of incorrect deserialization that results in failed memory allocation and a NULL pointer dereference.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27917?
CVE-2025-27917 has a moderate severity level due to its potential to cause a remote denial of service.
How do I fix CVE-2025-27917?
To mitigate CVE-2025-27917, ensure you update AnyDesk to version 9.0.5 or later.
What type of vulnerability is CVE-2025-27917?
CVE-2025-27917 is a remote denial of service vulnerability caused by incorrect deserialization.
What versions of AnyDesk are affected by CVE-2025-27917?
AnyDesk versions up to and including 9.0.4 are affected by CVE-2025-27917.
Can CVE-2025-27917 lead to data loss?
CVE-2025-27917 primarily causes a denial of service and does not directly result in data loss.