2025年6月16日星期一

Apple Products Security Restriction Bypass Vulnerability

Apple Products Security Restriction Bypass Vulnerability

Release Date: 16 Jun 2025

RISK: Medium Risk

TYPE: Operating Systems - Mobile & Apps

A vulnerability was identified in Apple Products. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targeted system.

 

Note:

For CVE-2025-43200, a logic issue existed when processing a maliciously crafted photo or video shared via an iCloud Link. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals. Apple had released patch to fix this vulnerability on 10 Feb 2025.


Impact

  • Security Restriction Bypass

System / Technologies affected

  • Versions prior to iOS 18.3.1
  • Versions prior to iPadOS 17.7.5
  • Versions prior to iPadOS 18.3.1
  • Versions prior to macOS Sequoia 15.3.1
  • Versions prior to macOS Sonoma 14.7.4
  • Versions prior to macOS Ventura 13.7.4
  • Versions prior to watchOS 11.3.1
  • Versions prior to visionOS 2.3.1

    Solutions

    Before installation of the software, please visit the vendor web-site for more details.

     

    Apply fixes issued by the vendor:

     

    • iOS 18.3.1 or later versions
    • iPadOS 17.7.5 or later versions
    • iPadOS 18.3.1 or later versions
    • macOS Sequoia 15.3.1 or later versions
    • macOS Sonoma 14.7.4 or later versions
    • macOS Ventura 13.7.4 or later versions
    • watchOS 11.3.1 or later versions
    • visionOS 2.3.1 or later versions

      Vulnerability Identifier


      Source


      Related Link

      沒有留言:

      發佈留言

      Apache Tomcat 多個漏洞

      Apache Tomcat 多個漏洞 發佈日期: 2025年06月18日 風險: 中度風險 類型: 伺服器 - 網站伺服器 於 Apache T...