First published: Mon May 12 2025(Updated: )
afpfs. The issue was addressed with improved memory handling.
Credit: Hossein Lotfi @hosselot Trend Micro Zero Day InitiativeCsaba Fitzl @theevilbit Kandjian anonymous researcher Dayton Pidhirney Atredis PartnersLyutoon YenKoc Mateusz Krzywicki @krzywix Michael DePlante @izobashi Trend Micro Zero Day InitiativeLucas Leong @_wmliang_ Trend Micro Zero Day InitiativeChristian Kohlschütter CVE-2024-8176 Paweł Płatek (Trail BitsLFY @secsys Fudan Universitywac Dave G. Kirin @Pwnrin 7feilee Eric Dorphy Twin Cities App Dev LLCAdam M. Sourabhkumar Mishra CVE-2025-26465 CVE-2025-26466 CertiK @CertiK Ryan Dowd @_rdowd Noah Gregory (wts.dev) Google V8 Security Team Andreas Jaegersberger & Ro Achterberg Nosebeard Labswac Trend Micro Zero Day InitiativeJiming Wang Jikai Ren Nan Wang @eternalsakura13 rheza @ginggilBesel Ignacio Sanmillan @ulexec Ivan Fratric Google Project ZeroJuergen Schmied Lynck GmbHLyutoon Atredis PartnersYenKoc Atredis PartnersJoseph Ravichandran @0xjprx MIT CSAILDillon Franke Google Project ZeroKirin @Pwnrin Fudan UniversityBohdan Stasiuk @bohdan_stasiuk Saagar Jha Thomas Völkl @vollkorntomate SEEMOO TU Darmstadt Guilherme Rambo Best Buddy Apps
Affected Software | Affected Version | How to fix |
---|---|---|
<13.7.6 | 13.7.6 | |
macOS | <15.5 | 15.5 |
macOS Ventura | <13.7.6 | 13.7.6 |
Apple macOS | <14.7.6 | 14.7.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2025-31232 is considered a high-severity vulnerability due to the potential for exploitation.
To fix CVE-2025-31232, update your macOS to the latest version provided by Apple.
CVE-2025-31232 affects macOS Ventura up to version 13.7.6, macOS Sequoia up to version 15.5, and macOS Sonoma up to version 14.7.6.
CVE-2025-31232 may lead to unauthorized access and compromise the confidentiality, integrity, and availability of the system.
There is no known workaround for CVE-2025-31232; applying the latest security updates is recommended.