PT-2025-18219 · Apple · Carplay Communication Plug-In +2
Published
2025-04-04
·
Updated
2025-09-11
·
CVE-2025-24132
6.5
Medium
Base vector | Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
**Name of the Vulnerable Software and Affected Versions:**
AirPlay audio SDK versions 2.7.1 and later
AirPlay video SDK versions 3.6.0.126 and later
CarPlay Communication Plug-in version R18.1 and later
**Description:**
The vulnerability stems from improved memory handling within the AirPlay and CarPlay frameworks. An attacker on the local network may be able to cause an unexpected application termination. The issue is related to a stack buffer overflow within the iAP2 protocol, which handles data exchange during the CarPlay connection process. Specifically, the vulnerability arises from insufficient validation of the length of incoming data, such as the device name, allowing an attacker to send a specially crafted packet exceeding the allocated buffer size. This can lead to remote code execution on the vehicle's head unit without user interaction.
**Recommendations:**
AirPlay audio SDK versions prior to 2.7.1 are vulnerable.
AirPlay video SDK versions prior to 3.6.0.126 are vulnerable.
CarPlay Communication Plug-in versions prior to R18.1 are vulnerable.
Exploit
Fix
RCE
DoS
Buffer Overflow
Weakness Enumeration
Related Identifiers
Affected Products
References · 43
- 🔥 https://github.com/ekomsSavior/AirBorne-PoC⭐ 93 🔗 16 · Exploit
- https://bdu.fstec.ru/vul/2025-05243 · Security Note
- https://support.apple.com/en-us/122403 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-24132 · Security Note
- https://twitter.com/UjlakiMarci/status/1917292423434162484 · Twitter Post
- https://twitter.com/anoncitylights/status/1917566500673839235 · Twitter Post
- https://t.me/cvedetector/24151 · Telegram Post
- https://twitter.com/AlexNguyen65/status/1965971692939018330 · Twitter Post
- https://reddit.com/r/hometheater/comments/1kcy9am/disable_airplay_on_denon_avr · Reddit Post
- https://twitter.com/syedaquib77/status/1917670373837136163 · Twitter Post
- https://twitter.com/Andrea040994/status/1917850637259231253 · Twitter Post
- https://twitter.com/_r_netsec/status/1965701302698316003 · Twitter Post
- https://t.me/secharvester/20074 · Telegram Post
- https://twitter.com/autumn_good_35/status/1917592400199049538 · Twitter Post
- https://twitter.com/wallet_guard/status/1917687228102291686 · Twitter Post