An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.3 and iPadOS 18.3. An attacker with physical access to an unlocked device may be able to access Photos while the app is locked.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 04 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics |
ssvc
|
Thu, 30 Jan 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple ipados Apple iphone Os |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Apple
Apple ipados Apple iphone Os |
|
| Metrics |
cvssV3_1
|
Mon, 27 Jan 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.3 and iPadOS 18.3. An attacker with physical access to an unlocked device may be able to access Photos while the app is locked. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2025-01-27T21:46:22.315Z
Updated: 2025-11-03T21:03:44.932Z
Reserved: 2025-01-17T00:00:44.975Z
Link: CVE-2025-24141
Updated: 2025-11-03T21:03:44.932Z
Status : Modified
Published: 2025-01-27T22:15:18.800
Modified: 2025-11-03T21:19:26.770
Link: CVE-2025-24141
No data.