CVE-2025-24200
EUVD-2025-367110.02.2025, 19:15
An authorization issue was addressed with improved state management. This issue is fixed in iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.1 and iPadOS 18.3.1, iPadOS 17.7.5. A physical attack may disable USB Restricted Mode on a locked device. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | ipados | 𝑥 < 15.8.4 |
| apple | ipados | 16.0 ≤ 𝑥 < 16.7.11 |
| apple | ipados | 17.0 ≤ 𝑥 ≤ 17.7.5 |
| apple | ipados | 18.0 ≤ 𝑥 < 18.3.1 |
| apple | iphone_os | 𝑥 < 15.8.4 |
| apple | iphone_os | 16.0 ≤ 𝑥 < 16.7.11 |
| apple | iphone_os | 17.0 ≤ 𝑥 < 18.3.1 |
𝑥
= Vulnerable software versions
References