CVE-2025-24097

CVSS 3.1 Score 5 of 10 (medium)

Details

Published Mar 31, 2025
Updated: Apr 4, 2025
CWE ID 125

Summary

CVE-2025-24097 is a permissions issue affecting multiple Apple operating systems, including macOS Sonoma, iOS, iPadOS, and tvOS. This vulnerability allowed certain applications to access arbitrary file metadata, posing a potential privacy and security risk. The issue has been resolved in the latest updates for each operating system: macOS Sonoma 14.7.5, iOS 18.4, iPadOS 18.4, and tvOS 18.4. Additionally, the macOS Sequoia 15.4 release addresses this vulnerability. By implementing additional restrictions, Apple effectively mitigates the risk of unauthorized data access associated with this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share