2025年2月14日星期五

Apple Products Security Restriction Bypass Vulnerability

Apple Products Security Restriction Bypass Vulnerability

Release Date: 13 Feb 2025

RISK: Medium Risk

TYPE: Operating Systems - Mobile & Apps

A vulnerability was identified in Apple Products. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targeted system.

 

Note:

For CVE-2025-24200, a physical attack may disable USB Restricted Mode on a locked device. CISA has added this CVE to its Known Exploited Vulnerabilities Catalog and Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.


Impact

  • Security Restriction Bypass

System / Technologies affected

  • Versions prior to iOS 18.3.1
  • Versions prior to iPadOS 17.7.5
  • Versions prior to iPadOS 18.3.1

    Solutions

    Before installation of the software, please visit the vendor web-site for more details.

     

    Apply fixes issued by the vendor:

     

    • iOS 18.3.1
    • iPadOS 17.7.5
    • iPadOS 18.3.1

      Vulnerability Identifier


      Source


      Related Link

      沒有留言:

      發佈留言

      Apache Tomcat 多個漏洞

      Apache Tomcat 多個漏洞 發佈日期: 2025年06月18日 風險: 中度風險 類型: 伺服器 - 網站伺服器 於 Apache T...