CVE-2025-24198
CVSS 3.1 Score 6.6 of 10 (medium)
Details
Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 284
Summary
CVE-2025-24198 is a vulnerability affecting Apple devices, including macOS and iOS. The issue was resolved by limiting Siri functionality on locked devices. An attacker with physical access could exploit this vulnerability to gain access to sensitive user data through Siri communications. This vulnerability has been addressed in the latest updates for macOS Ventura 13.7.5, iOS 18.4, iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, and macOS Sonoma 14.7.5.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- iOS
- iPadOS
- Apple (iPhone OS)
- MacOS
Affected Vendors
- Apple