Skip to main content

If you’re a Compressor user, you should really get the latest update

Apple has released Compressor 4.11.1, with an important security fix. Here are the details.

Apple fixes remote execution flaw

If you’re not familiar with Compressor, this is a professional app made by Apple that handles video and audio encoding, transcoding, and format conversion.

It works in conjunction with Final Cut Pro and Motion, allowing more flexible conversion workflows.

Recently, Apple updated the app to version 4.11, bringing support for multiple features and video capture technologies announced with the iPhone 17 lineup.

Today, however, Apple released an even more critical update to Compressor with version 4.11.1, handling a rather serious security flaw, although it could only be exploited under very specific circumstances:

Compressor

Available for: macOS Sequoia 15.6 and later

Impact: An unauthenticated user on the same network as a Compressor server may be able to execute arbitrary code

Description: The issue was addressed by refusing external connections by default.

CVE-2025-43515: CodeColorist and Pedro Tôrres(@t0rr3sp3dr0)

This means that anyone who had enabled Compressor’s network-based server features could have been vulnerable to remote code execution, but only by someone on the same network.

And while the fix apparently changes the default configuration, rather than handling the underlying exploit vector, it is still important to update it as soon as possible, as it is likely that attackers will try to target outdated versions of the app.

To read more about today’s security update, follow this link.

Accessory deals on Amazon

FTC: We use income earning auto affiliate links. More.

You’re reading 9to5Mac — experts who break news about Apple and its surrounding ecosystem, day after day. Be sure to check out our homepage for all the latest news, and follow 9to5Mac on Twitter, Facebook, and LinkedIn to stay in the loop. Don’t know where to start? Check out our exclusive stories, reviews, how-tos, and subscribe to our YouTube channel

Comments

Author

Avatar for Marcus Mendes Marcus Mendes

Marcus Mendes is a Brazilian tech podcaster and journalist who has been closely following Apple since the mid-2000s.

He began covering Apple news in Brazilian media in 2012 and later broadened his focus to the wider tech industry, hosting a daily podcast for seven years.