Vulnerability Description
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, visionOS 2.3, watchOS 11.3. An app may be able to fingerprint the user.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Ipados | < 17.7.4 |
| Apple | Iphone Os | < 18.3 |
| Apple | Macos | < 15.3 |
| Apple | Visionos | < 2.3 |
| Apple | Watchos | < 11.3 |
Related Weaknesses (CWE)
References
- https://support.apple.com/en-us/122066Release NotesVendor Advisory
- https://support.apple.com/en-us/122067Release NotesVendor Advisory
- https://support.apple.com/en-us/122068Release NotesVendor Advisory
- https://support.apple.com/en-us/122071Release NotesVendor Advisory
- https://support.apple.com/en-us/122073Release NotesVendor Advisory
- http://seclists.org/fulldisclosure/2025/Jan/12
- http://seclists.org/fulldisclosure/2025/Jan/14
- http://seclists.org/fulldisclosure/2025/Jan/15
- http://seclists.org/fulldisclosure/2025/Jan/18
FAQ
What is CVE-2025-24117?
CVE-2025-24117 is a vulnerability with a CVSS score of 5.5 (MEDIUM). This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, visionOS 2.3, watchOS 11.3. An app may be...
How severe is CVE-2025-24117?
CVE-2025-24117 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-24117?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Ipados, Apple Iphone Os, Apple Macos, Apple Visionos, Apple Watchos.