logo

Apple fixes this year’s first actively exploited zero-day bug

ID: 0f78d912-8003-5bc4-986d-29b1865c9649

STIX ID: report--0f78d912-8003-5bc4-986d-29b1865c9649

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2025-01-27

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Apple released security updates addressing CVE-2025-24085, an actively exploited privilege escalation zero-day in the Core Media framework that affects iPhone, iPad, Mac, Apple TV, Apple Watch and visionOS devices; Apple confirmed reports of in-the-wild exploitation and recommends immediate installation of updates, while not attributing the discovery or publishing attack details.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.