logo

Apple plugs security hole in its iThings that's already been exploited in iOS

ID: 5d282601-0d08-5ef8-8f86-9cdbd5f39a67

STIX ID: report--5d282601-0d08-5ef8-8f86-9cdbd5f39a67

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2025-01-28

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Apple issued security updates to address a CoreMedia use-after-free vulnerability (CVE-2025-24085) that was reportedly exploited in the wild as a zero-day to allow a malicious app to elevate privileges on iOS devices; patches are available across iPhone, iPad, macOS Sequoia, Vision Pro, Apple TV and Apple Watch platforms, and the updates also fix several other CVEs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.