U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2025-24201

Change History

New CVE Received from Apple Inc. 3/11/2025 2:15:30 PM

Action Type Old Value New Value
Added Description

								
							
							
						
An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in visionOS 2.3.2, iOS 18.3.2 and iPadOS 18.3.2, macOS Sequoia 15.3.2. Maliciously crafted web content may be able to break out of Web Content sandbox. This is a supplementary fix for an attack that was blocked in iOS 17.2. (Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 17.2.).
Added Reference

								
							
							
						
https://support.apple.com/en-us/122281
Added Reference

								
							
							
						
https://support.apple.com/en-us/122283
Added Reference

								
							
							
						
https://support.apple.com/en-us/122284