CVE-2025-24132
MEDIUM 6.5EPSS 3.2%
The issue was addressed with improved memory handling. This issue is fixed in AirPlay audio SDK 2.7.1, AirPlay video SDK 3.6.0.126, CarPlay Communication Plug-in R18.1. An attacker on the local network may cause an unexpected app termination.
- CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - EPSS
- 3.15% chance of exploitation in the next 30 days, 87th percentile
- Published
- 2025-04-30
- Updated
- 2026-04-02
Proof-of-concept exploits (3)
- cesco345/Airplay-CVE11★ · 2025-05-07
- ekomsSavior/AirBorne-PoC164★ · 2026-01-08
- TheGamingGallifreyan/LiberationPlay-CVE-2025-24132-AirBourne-POC