{
  "crds_version": "0.1",
  "kind": "base",
  "id": "crds:cve-2025-24085",
  "revision": 1,
  "title": "Apple platforms — use-after-free lets an app raise privileges",
  "summary": "A use-after-free across Apple's operating systems lets an app already installed on the device raise its own privileges. Apple fixed it in the January 2025 releases and says it may have been exploited before then.",
  "source_type": "cve",
  "severity": "critical",
  "cvss": {
    "score": 10,
    "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
    "version": "3.1"
  },
  "epss": 0.1751,
  "exploitation": {
    "known_exploited": true,
    "exploit_available": false,
    "attack_complexity": "low",
    "kev_added": "2025-01-29",
    "prerequisites": "A malicious application already installed on the device."
  },
  "remediation": {
    "patch_available": true,
    "fixed_in": [
      "iOS 18.3",
      "iPadOS 18.3",
      "iPadOS 17.7.6",
      "macOS Sequoia 15.3",
      "macOS Sonoma 14.7.5",
      "macOS Ventura 13.7.5",
      "tvOS 18.3",
      "visionOS 2.3",
      "watchOS 11.3"
    ]
  },
  "kill_chain": "privilege_escalation",
  "recommended_action": "Update to iOS and iPadOS 18.3, iPadOS 17.7.6, macOS Sequoia 15.3, Sonoma 14.7.5 or Ventura 13.7.5, and the matching tvOS, visionOS and watchOS builds.",
  "confidence": "high",
  "provenance": [
    {
      "fields": [
        "cvss",
        "exploitation.attack_complexity",
        "exploitation.exploit_available",
        "references",
        "published_at"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2025-24085",
      "retrieved_at": "2026-09-24T12:03:01.274Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "exploitation.known_exploited",
        "exploitation.kev_added"
      ],
      "source": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "retrieved_at": "2026-09-24T12:03:01.274Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "epss"
      ],
      "source": "https://api.first.org/data/v1/epss?cve=CVE-2025-24085",
      "retrieved_at": "2026-09-24T12:03:01.274Z",
      "confidence": "high",
      "extractor": "scrty-crds-pipeline/0.1"
    },
    {
      "fields": [
        "title",
        "summary",
        "severity",
        "remediation",
        "mitre_attack",
        "kill_chain",
        "recommended_action",
        "confidence",
        "tags",
        "exploitation.prerequisites"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2025-24085",
      "retrieved_at": "2026-09-24T12:03:01.274Z",
      "confidence": "high",
      "extractor": "claude-code"
    }
  ],
  "references": [
    {
      "type": "cve",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24085",
      "label": "NVD record"
    },
    {
      "type": "cisa",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "label": "CISA Known Exploited Vulnerabilities catalog"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/122066"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/122068"
    },
    {
      "type": "vendor_advisory",
      "url": "https://support.apple.com/en-us/122071"
    }
  ],
  "published_at": "2025-01-27T22:15:14.990Z",
  "issued_at": "2026-09-24T12:03:01.274Z",
  "tags": [
    "apple",
    "ios",
    "macos",
    "use-after-free",
    "privilege-escalation",
    "kev"
  ]
}
