CVE-2025-32899
MEDIUMKDE Connect <1.33.0 - DoS
Title source: llmDescription
In KDE Connect before 1.33.0 on Android, a packet can be crafted that causes two paired devices to unpair. Specifically, it is an invalid discovery packet sent over broadcast UDP.
Exploits (1)
Scores
CVSS v3
4.3
EPSS
0.0002
EPSS Percentile
5.4%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Details
CWE
CWE-1250
Status
published
Products (1)
KDE/KDEConnect
< 1.33.0
Published
Dec 05, 2025
Tracked Since
Feb 18, 2026