CVE-2025-31200: Apple Multiple Products Memory Corruption Vulnerability
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Sequoia 15.4.1, tvOS 18.4.1, visionOS 2.4.1, watchOS 11.5. Processing an audio stream in a maliciously crafted media file may result in code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS released before iOS 18.4.1.
Credit
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-31200?
CVE-2025-31200 is a critical memory corruption vulnerability that can lead to code execution when processing malicious audio streams.
How do I fix CVE-2025-31200?
CVE-2025-31200 can be fixed by updating to the latest versions of affected software: tvOS 18.4.1, visionOS 2.4.1, iOS 18.4.1, iPadOS 18.4.1, and macOS Sequoia 15.4.1.
What products are affected by CVE-2025-31200?
CVE-2025-31200 affects Apple products that include tvOS, visionOS, iOS, iPadOS, and macOS Sequoia.
What types of attacks can exploit CVE-2025-31200?
CVE-2025-31200 can be exploited through specially crafted media files that target memory corruption vulnerabilities.
What should users do if they are vulnerable to CVE-2025-31200?
Users vulnerable to CVE-2025-31200 should immediately update their devices to the latest available software versions provided by Apple.