Rewterz
Hard-Coded Telnet Credentials Expose D-Link Routers to RCE
May 26, 2025
Rewterz
Oracle TNS Protocol Vulnerability Allows Attackers to Access System Memory
May 26, 2025

Multiple Apple Products Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2025-31240 CVSS:6.5

This issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. Mounting a maliciously crafted AFP network share may lead to system termination.

CVE-2025-24222 CVSS:6.5

Apple macOS Sequoia is vulnerable to a denial of service, caused by an issue in the BOM component when visiting a specially crafted Web site.

CVE-2025-31237 CVSS:6.5

Apple macOS Ventura is vulnerable to a denial of service, caused by an error in the afpfs component when connecting to a malicious AFP server.

Impact

  • Denial of Service

Indicators of Compromise

CVE

  • CVE-2025-31240

  • CVE-2025-24222

  • CVE-2025-31237

Affected Vendors

  • Apple

Affected Products

  • Apple macOS Ventura - 13.7.5
  • Apple macOS Sequoia - 15.4

Remediation

Refer to Apple security document for patch, upgrade or suggested workaround information.