CVE-2025-31229: Critical severity Apple iOS vulnerability
Published Jul 29, 2025
·Updated
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.
Other sources
Accessibility. A logic issue was addressed with improved checks.
— Apple
Credit
Wong Wee Xiang, Himanshu Bharti@@Xpl0itme, Hossein Lotfi@@hosselot(Trend Micro Zero Day Initiative), Andreas Jaegersberger & Ro Achterberg(Nosebeard Labs), Google's Threat Analysis Group, Chi Yuan Chang(ZUSO ART), taikosoup, Gary Kwong(Trend Micro Zero Day Initiative), CVE-2025-43226, Christian Kohlschütter, Brian Carpenter, Sergei Glazunov(Google Project Zero), Ivan Fratric(Google Project Zero), Vlad Stolyarov(Google's Threat Analysis Group), Michael DePlante@@izobashi(Trend Micro Zero Day Initiative), CVE-2025-6965, Jaydev Ahire, Gilad Moav, Yehuda Afek, Anat Bremler-Barr, Amit Klein, Yuhao Hu, Yan Kang, Chenggang Wu, Xiaojie Wei, shandikri(Trend Micro Zero Day Initiative), Google V8 Security Team, Nan Wang@@eternalsakura13, Ziling Chen, HexRabbit@@h3xr4bb1t(DEVCORE Research Team), Ignacio Sanmillan@@ulexec, Clément Lecigne(Google's Threat Analysis Group)
Affected Software
4 affected componentsFixes available
Apple iOS<18.6
18.6
Apple iPadOS<18.6
18.6
Apple iPadOS<18.6
Apple iPhone OS<18.6
Event History
Jul 29, 2025
Data Sourced
via Apple·12:00 AM
DescriptionWeaknessAffected Software
CVE Published
via MITRE·11:29 PM
Data Sourced
via MITRE·11:29 PM
DescriptionWeakness
Jul 30, 2025
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2025-31229
- CVE-2025-43217
- CVE-2025-43186
- CVE-2025-43223
- CVE-2025-43277
- CVE-2025-43210
- CVE-2025-43230
- CVE-2025-43209
- CVE-2025-43226
- CVE-2025-43282
- CVE-2025-43202
- CVE-2025-7425
- CVE-2025-7424
- CVE-2025-31276
- CVE-2025-43280
- CVE-2025-43234
- CVE-2025-43224
- CVE-2025-43221
- CVE-2025-31281
- CVE-2025-6965
- CVE-2025-43228
- CVE-2025-43227
- CVE-2025-31278
- CVE-2025-31277
- CVE-2025-31273
- CVE-2025-43214
- CVE-2025-43213
- CVE-2025-43212
- CVE-2025-43211
- CVE-2025-43265
- CVE-2025-43216
- CVE-2025-6558
Frequently Asked Questions
1
What is the severity of CVE-2025-31229?
CVE-2025-31229 is classified as a logic issue that poses a potential security risk in iOS and iPadOS.
2
How do I fix CVE-2025-31229?
To fix CVE-2025-31229, update your device to iOS 18.6 or iPadOS 18.6.
3
What does CVE-2025-31229 affect?
CVE-2025-31229 affects iOS and iPadOS versions prior to 18.6.
4
What issue does CVE-2025-31229 address?
CVE-2025-31229 addresses a logic issue that could allow the passcode to be read aloud by VoiceOver.
5
When was CVE-2025-31229 disclosed?
CVE-2025-31229 was disclosed alongside its fix in iOS 18.6 and iPadOS 18.6.