CVE-2025-24107: Use After Free
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, tvOS 18.3, watchOS 11.3. A malicious app may be able to gain root privileges.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24107?
CVE-2025-24107 addresses a serious permissions issue that could allow a malicious app to gain root privileges on affected Apple devices.
How do I fix CVE-2025-24107?
To mitigate CVE-2025-24107, ensure your Apple device is updated to macOS Sequoia 15.3, tvOS 18.3, watchOS 11.3, iOS 18.3, or iPadOS 18.3.
Which Apple devices are affected by CVE-2025-24107?
CVE-2025-24107 affects macOS Sequoia, tvOS, watchOS, iOS, and iPadOS versions prior to the specified updates.
What are the risks associated with CVE-2025-24107?
The risk associated with CVE-2025-24107 is that a malicious app could exploit the permissions issue to gain unauthorized access and control over the device.
Is CVE-2025-24107 a critical vulnerability?
Yes, CVE-2025-24107 is considered critical due to its potential to allow attackers to obtain root privileges.