PT-2025-6097 · Apple · Ios +1
Bill Marczak
·
Published
2025-02-10
·
Updated
2025-08-04
·
CVE-2025-24200
6.2
Medium
Base vector | Vector | AV:L/AC:H/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
iOS versions prior to 18.3.1
iPadOS versions prior to 18.3.1
iPadOS versions prior to 17.7.5
Description:
A physical attack may disable USB Restricted Mode on a locked device. This issue is related to an authorization problem that has been addressed with improved state management. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals. The vulnerability allows attackers to bypass USB Restricted Mode, which is a security feature designed to prevent data extraction from locked devices.
Recommendations:
To resolve the issue, update your iOS device to version 18.3.1 or later.
To resolve the issue, update your iPadOS device to version 18.3.1 or later.
To resolve the issue, update your iPadOS device to version 17.7.5 or later.
Fix
Improper Authentication
Incorrect Authorization
Related Identifiers
Affected Products
References · 247
- https://support.apple.com/en-us/122174 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-24200 · Security Note
- https://support.apple.com/en-us/122173 · Security Note, Vendor Advisory
- https://bdu.fstec.ru/vul/2025-01367 · Security Note
- https://twitter.com/YorickReintjens/status/1889285198870712779 · Twitter Post
- https://twitter.com/Free_LanceTools/status/1889189191616987487 · Twitter Post
- https://twitter.com/transilienceai/status/1890912520799457389 · Twitter Post
- https://twitter.com/phoneserviser1/status/1889593143391113260 · Twitter Post
- https://twitter.com/compuchris/status/1891462367487103250 · Twitter Post
- https://twitter.com/PVynckier/status/1889283417059017032 · Twitter Post
- https://twitter.com/TMJIntel/status/1889712080703393977 · Twitter Post
- https://twitter.com/FCE365/status/1890512298785059192 · Twitter Post
- https://twitter.com/ethicalhack3r/status/1889230598394224851 · Twitter Post
- https://twitter.com/storagetechnews/status/1892005390935564568 · Twitter Post
- https://reddit.com/r/mac/comments/1kctqy8/stolen_2019_macbook_pro_find_my_erase_pending_but · Reddit Post