CVE-2025-31237: High severity Apple macOS vulnerability
afpfs. The issue was addressed with improved memory handling.
Other sources
afpfs. This issue was addressed with improved checks.
— Apple
This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.
— MITRE
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2025-31246
- CVE-2025-31240
- CVE-2025-31237
- CVE-2025-31251
- CVE-2025-31235
- CVE-2025-31208
- CVE-2025-31196
- CVE-2025-31209
- CVE-2025-31239
- CVE-2025-31233
- CVE-2025-30453
- CVE-2025-24258
- CVE-2025-30448
- CVE-2025-31232
- CVE-2025-24144
- CVE-2025-31219
- CVE-2025-31241
- CVE-2024-8176
- CVE-2025-30440
- CVE-2025-31222
- CVE-2025-24274
- CVE-2025-24142
- CVE-2025-26465
- CVE-2025-26466
- CVE-2025-31245
- CVE-2025-31224
- CVE-2025-31221
- CVE-2025-31213
- CVE-2025-31247
- CVE-2025-30442
- CVE-2025-31242
- CVE-2025-31220
- CVE-2025-24155
- CVE-2025-31260
- CVE-2025-24222
- CVE-2025-31212
- CVE-2025-31236
- CVE-2025-30443
- CVE-2025-31226
- CVE-2025-24224
- CVE-2025-31218
- CVE-2025-31256
- CVE-2025-31234
- CVE-2025-31244
- CVE-2025-31258
- CVE-2025-31266
- CVE-2025-31249
- CVE-2025-31259
- CVE-2025-31250
- CVE-2025-31248
- CVE-2025-24213
- CVE-2025-31223
- CVE-2025-31238
- CVE-2025-31215
- CVE-2025-31204
- CVE-2025-24223
- CVE-2025-31206
- CVE-2025-31217
- CVE-2025-31205
- CVE-2025-31257
- CVE-2025-43374
Frequently Asked Questions
What is the severity of CVE-2025-31237?
CVE-2025-31237 is considered a high-severity vulnerability due to its potential impact on system security.
How do I fix CVE-2025-31237?
To fix CVE-2025-31237, update to the latest version of macOS that addresses the vulnerability.
Which macOS versions are affected by CVE-2025-31237?
CVE-2025-31237 affects macOS Sonoma versions before 14.7.6, macOS Sequoia versions before 15.5, and macOS Ventura versions before 13.7.6.
What type of vulnerability is CVE-2025-31237?
CVE-2025-31237 is a memory handling vulnerability that may lead to unauthorized access or system compromise.
Is there any public exploit for CVE-2025-31237?
As of now, there are no known public exploits specifically targeting CVE-2025-31237.