CVE-2025-31229
Published Jul 29, 2025
·Updated
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.
Credit
Wong Wee Xiang, Himanshu Bharti@@Xpl0itme, Hossein Lotfi@@hosselot(Trend Micro Zero Day Initiative), Andreas Jaegersberger & Ro Achterberg(Nosebeard Labs), Google's Threat Analysis Group, Chi Yuan Chang(ZUSO ART), taikosoup, Gary Kwong(Trend Micro Zero Day Initiative), CVE-2025-43226, Christian Kohlschütter, Brian Carpenter, Sergei Glazunov(Google Project Zero), Ivan Fratric(Google Project Zero), Vlad Stolyarov(Google's Threat Analysis Group), Michael DePlante@@izobashi(Trend Micro Zero Day Initiative), CVE-2025-6965, Jaydev Ahire, Gilad Moav, Yehuda Afek, Anat Bremler-Barr, Amit Klein, Yuhao Hu, Yan Kang, Chenggang Wu, Xiaojie Wei, shandikri(Trend Micro Zero Day Initiative), Google V8 Security Team, Nan Wang@@eternalsakura13, Ziling Chen, HexRabbit@@h3xr4bb1t(DEVCORE Research Team), Ignacio Sanmillan@@ulexec, Clément Lecigne(Google's Threat Analysis Group)
Affected Software
4 affected componentsFixes available
Apple iOS<18.6
18.6
Apple iPadOS<18.6
18.6
Apple iPadOS<18.6
Apple iPhone OS<18.6
Event History
Jul 29, 2025
Data Sourced
via Apple·12:00 AM
DescriptionWeaknessAffected Software
CVE Published
via MITRE·11:29 PM
Data Sourced
via MITRE·11:29 PM
DescriptionWeakness
Jul 30, 2025
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-31229?
CVE-2025-31229 is classified as a logic issue that poses a potential security risk in iOS and iPadOS.
2
How do I fix CVE-2025-31229?
To fix CVE-2025-31229, update your device to iOS 18.6 or iPadOS 18.6.
3
What does CVE-2025-31229 affect?
CVE-2025-31229 affects iOS and iPadOS versions prior to 18.6.
4
What issue does CVE-2025-31229 address?
CVE-2025-31229 addresses a logic issue that could allow the passcode to be read aloud by VoiceOver.
5
When was CVE-2025-31229 disclosed?
CVE-2025-31229 was disclosed alongside its fix in iOS 18.6 and iPadOS 18.6.