PT-2025-11545 · Apple · Visionos+6

Published

2024-12-11

·

Updated

2025-09-05

·

CVE-2024-54525

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions visionOS versions prior to 2.2 watchOS versions prior to 11.2 tvOS versions prior to 18.2 macOS Sequoia versions prior to 15.2 iOS versions prior to 18.2 iPadOS versions prior to 18.2
Description A logic issue was addressed with improved file handling. Restoring a maliciously crafted backup file may lead to modification of protected system files.
Recommendations For visionOS versions prior to 2.2, update to version 2.2 to resolve the issue. For watchOS versions prior to 11.2, update to version 11.2 to resolve the issue. For tvOS versions prior to 18.2, update to version 18.2 to resolve the issue. For macOS Sequoia versions prior to 15.2, update to version 15.2 to resolve the issue. For iOS versions prior to 18.2, update to version 18.2 to resolve the issue. For iPadOS versions prior to 18.2, update to version 18.2 to resolve the issue.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

BDU:2025-03272
CVE-2024-54525

Affected Products

Apple Macos
Ios
Ipados
Macos Sequoia
Tvos
Visionos
Watchos