CVE-2025-24198

This issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Ventura 13.7.5, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An attacker with physical access may be able to use Siri to access sensitive user data.
Configurations

No configuration.

History

01 Apr 2025, 19:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.6
CWE CWE-284

31 Mar 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-31 23:15

Updated : 2025-04-01 20:26


NVD link : CVE-2025-24198

Mitre link : CVE-2025-24198

CVE.ORG link : CVE-2025-24198


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control