Description
This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.
Published: 2025-05-12
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch Immediately
AI Analysis

Impact

Mounting a maliciously crafted AFP network share can cause the system to terminate, effectively denying service to legitimate users. The weakness is classified as CWE‑404, indicating improper resource shutdown or release, which allows the attacker to induce a crash by manipulating the file‑system protocol handling. The impact is local to the affected machine but can disrupt multiple users if the device hosts critical services.

Affected Systems

Apple macOS platforms are affected. The issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, and macOS Ventura 13.7.6. Prior versions lacking these updates remain vulnerable.

Risk and Exploitability

The CVSS score of 7.5 indicates a high severity vulnerability. However, the EPSS score of less than 1% suggests exploitation is unlikely in the near term, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is a network attacker mounting a malicious AFP share; the attacker would need network access to the target and the ability to craft a problematic share. Overall risk is high for exposed devices but low probability of current exploitation.

Generated by OpenCVE AI on April 28, 2026 at 01:43 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the macOS operating system to at least macOS Sequoia 15.5, macOS Sonoma 14.7.6, or macOS Ventura 13.7.6, which contain the applied checks that prevent the crash.
  • Disable or restrict Apple Filing Protocol shares on systems that cannot be patched immediately to reduce exposure.
  • Monitor system logs for AFP‑related errors or abnormal termination events and verify that the crash does not recur.

Generated by OpenCVE AI on April 28, 2026 at 01:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2025-14619 This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.
History

Tue, 28 Apr 2026 02:00:00 +0000

Type Values Removed Values Added
Title System Termination via Malicious AFP Share

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. Mounting a maliciously crafted AFP network share may lead to system termination. This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.

Mon, 03 Nov 2025 20:30:00 +0000


Tue, 27 May 2025 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos

Tue, 13 May 2025 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-404
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 12 May 2025 21:45:00 +0000

Type Values Removed Values Added
Description This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-04-02T18:23:11.197Z

Reserved: 2025-03-27T16:13:58.324Z

Link: CVE-2025-31237

cve-icon Vulnrichment

Updated: 2025-11-03T19:51:11.701Z

cve-icon NVD

Status : Modified

Published: 2025-05-12T22:15:24.090

Modified: 2026-04-02T19:19:52.717

Link: CVE-2025-31237

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-28T01:45:18Z

Weaknesses