← Back

CVE-2025-24270

nvd nist
Published: Apr 29, 2025Modified: Apr 2, 2026

JSON object

Loading...
5.7
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 2.1 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4. An attacker on the local network may be able to leak sensitive user information.

Affected (8)

5 products
Ipados
Iphone Os
Macos
Tvos
Visionos
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Before 17.7.6
From 18.0 to 18.4
Before 18.4
Apple
Before 13.7.5
From 14.0 to 14.7.5
From 15.0 to 15.4
Before 18.4
Before 2.4

References (7)

Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory

Timeline

No history available yet.