CVE-2025-13524
Severity CVSS v4.0:
MEDIUM
Type:
CWE-404
Improper Resource Shutdown or Release
Publication date:
21/11/2025
Last modified:
21/11/2025
Description
Improper resource release in the call termination process in AWS Wickr before version 6.62.13 on Windows, macOS and Linux may allow a call participant to continue receiving audio input from another user after they close their call window. This issue occurs under certain conditions, which require the affected user to take a particular action within the application<br />
<br />
To mitigate this issue, users should upgrade AWS Wickr, Wickr Gov and Wickr Enterprise desktop version to version 6.62.13.
Impact
Base Score 4.0
6.80
Severity 4.0
MEDIUM
Base Score 3.x
5.70
Severity 3.x
MEDIUM



