Network Share Exploit in macOS Products by Apple
CVE-2025-31240

7.5HIGH

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
12 May 2025

What is CVE-2025-31240?

This vulnerability allows an attacker to exploit a flaw in the handling of AFP network shares in macOS products. When a device mounts a maliciously crafted AFP network share, it could lead to unexpected system termination, compromising operational integrity and potentially impacting data availability. Users are advised to apply the latest security updates to safeguard against such risks.

Affected Version(s)

macOS < 15.5

macOS < 14.7

macOS < 13.7

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.