Apple Products CoreAudio Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the CoreAudio component of various Apple operating systems, including watchOS 11.5, macOS Sonoma 14.7.6, tvOS 18.5, iPadOS 17.7.7, iOS 18.5, macOS Ventura 13.7.6, and visionOS 2.5. This vulnerability arises from improper handling of audio streams in maliciously crafted media files, which can lead to unexpected application termination or corruption of process memory.

Impact

Exploitation of this vulnerability causes a denial-of-service by terminating the affected application unexpectedly.

Remediation

Users can update to the latest versions of watchOS, macOS, iPadOS, iOS, tvOS, or visionOS to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.