CVE Vulnerabilities

CVE-2025-24159

Published: Jan 27, 2025 | Modified: Mar 19, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A validation issue was addressed with improved logic. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An app may be able to execute arbitrary code with kernel privileges.

Affected Software

Name Vendor Start Version End Version
Ipados Apple * 17.7.4 (excluding)
Ipados Apple 18.0 (including) 18.3 (excluding)
Iphone_os Apple * 18.3 (excluding)
Macos Apple * 14.7.3 (excluding)
Macos Apple 15.0 (including) 15.3 (excluding)
Tvos Apple * 18.3 (excluding)
Visionos Apple * 2.3 (excluding)
Watchos Apple * 11.3 (excluding)

References