CVE-2025-24198

CVSS 3.1 Score 6.6 of 10 (medium)

Details

Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 284

Summary

CVE-2025-24198 is a vulnerability affecting Apple devices, including macOS and iOS. The issue was resolved by limiting Siri functionality on locked devices. An attacker with physical access could exploit this vulnerability to gain access to sensitive user data through Siri communications. This vulnerability has been addressed in the latest updates for macOS Ventura 13.7.5, iOS 18.4, iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, and macOS Sonoma 14.7.5.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • iOS
  • iPadOS
  • Apple (iPhone OS)
  • MacOS

Affected Vendors

  • Apple