CVE-2025-24137
CVSS 3.1 Score 8 of 10 (high)
Details
Published Jan 27, 2025
Updated: Jan 28, 2025
CWE ID 843
Summary
CVE-2025-24137 is a type confusion vulnerability that has been addressed in multiple Apple operating systems. This issue could potentially allow a remote attacker to cause an unexpected application termination or execute arbitrary code on affected devices. The vulnerability has been resolved in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3, and iPadOS 18.3, as well as macOS Sequoia 15.3, watchOS 11.3, and tvOS 18.3. Apple implemented improved checks to prevent exploitation of this type confusion issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share