CNNVD-202511-2441 Information

CNNVD ID

CNNVD-202511-2441

CVE-2025-13524

  • CNNVD Published: 2025-11-21

Description (Chinese)

Amazon Web Services Wickr是美国亚马逊(Amazon)公司的一个端到端加密服务。 Amazon Web Services Wickr 6.62.13之前版本存在安全漏洞,该漏洞源于调用终止过程中资源释放不当,可能导致继续接收音频输入。

Description (English)

Amazon Web Services Wickr is an end-to-end encryption service for Amazon Corporation in the United States. Prior to Amazon Web Services Wickr 6.62.13, there was a security loophole, which stemmed from the inappropriate release of resources during the call-out, which could lead to the continued reception of audio input.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

亚马逊

Published

2025-11-21

Last Modified

2026-02-24

References

https://aws.amazon.com/security/security-bulletins/AWS-2025-029/ https://docs.aws.amazon.com/wickr/latest/enterpriseadminguide/clients-release-notes-6.62.html https://access.redhat.com/security/cve/cve-2025-13524

Patch

https://docs.aws.amazon.com/wickr/latest/enterpriseadminguide/clients-release-notes-6.62.html

Share on: