CVE-2025-30422

MEDIUM

AirPlay audio/video/CarPlay - Buffer Overflow

Title source: llm
STIX 2.1

Description

A buffer overflow was addressed with improved input validation. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPlay video SDK 3.6.0.126. An attacker on the local network may cause an unexpected app termination.

References (1)

Core 1
Core References

Scores

CVSS v3 6.5
EPSS 0.0014
EPSS Percentile 34.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-120
Status published
Products (5)
Apple/AirPlay audio SDK < 2.7.1
Apple/AirPlay video SDK < 2.7.1
apple/airplay_audio_software_development_kit < 2.7.1
apple/airplay_video_software_development_kit < 3.6.0.126
apple/carplay_communication_plug-in < r18.1
Published Apr 30, 2025
Tracked Since Feb 18, 2026