← Back

CVE-2025-24091

nvd nist
Published: Apr 30, 2025Modified: May 12, 2025

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

An app could impersonate system notifications. Sensitive notifications now require restricted entitlements. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.3. An app may be able to cause a denial-of-service.

Affected (3)

Products: Apple: Ipados, Iphone Os
2 products
Ipados
Iphone Os
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Before 17.7.3
From 18.0 to 18.3
Up to 18.3

References (2)

Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory

Timeline

No history available yet.