logo

Apple Patches Actively Exploited Zero-Day Vulnerability

ID: e9d20988-63b4-564c-b0f8-d5f304294372

STIX ID: report--e9d20988-63b4-564c-b0f8-d5f304294372

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2025-01-27

Date Updated: 2026-04-21

Author: Kristina Beek, Associate Editor, Dark Reading

...
...

Apple released security updates (including iOS 18.3) to patch CVE-2025-24085, a zero-day privilege escalation defect in the Core Media framework affecting iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. Apple states the flaw has been actively exploited in the wild and the update also fixes additional vulnerabilities; specific attack details and attribution were not disclosed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.