Loading HuntDB...

CVE-2025-24203

MEDIUM
Published 2025-03-31T22:24:18.620Z
Actions:

Expert Analysis

Professional remediation guidance

Get tailored security recommendations from our analyst team for CVE-2025-24203. We'll provide specific mitigation strategies based on your environment and risk profile.

CVSS Score

V3.1
5.0
/10
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
Base Score Metrics
Exploitability: N/A Impact: N/A

EPSS Score

v2025.03.14
0.000
probability
of exploitation in the wild

There is a 0.0% chance that this vulnerability will be exploited in the wild within the next 30 days.

Updated: 2025-06-25
Exploit Probability
Percentile: 0.002
Higher than 0.2% of all CVEs

Attack Vector Metrics

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED

Impact Metrics

Confidentiality
NONE
Integrity
HIGH
Availability
NONE

Description

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to modify protected parts of the file system.

Available Exploits

No exploits available for this CVE.

Related News

DirtyZero v1.1 released with an updated user interface, additional features, and QoL improvements

The dirtyZero toolbox based on Ian Beer's CVE-2025-24203 writeup has been updated to version 1.1 with new features and an updated UI.

Idownloadblog.com 2025-08-26 00:14

Affected Products

EU Vulnerability Database

Monitored by ENISA for EU cybersecurity

EU Coordination

Not EU Coordinated

Exploitation Status

No Known Exploitation

ENISA Analysis

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to modify protected parts of the file system.

Affected Products (ENISA)

apple
ipados

ENISA Scoring

CVSS Score (3.1)

5.0
/10
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N

EPSS Score

0.010
probability

Data provided by ENISA EU Vulnerability Database. Last updated: April 1, 2025

GitHub Security Advisories

Community-driven vulnerability intelligence from GitHub

⚠ Unreviewed MODERATE

GHSA-378r-2hmj-3r7x

Advisory Details

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to modify protected parts of the file system.

CVSS Scoring

CVSS Score

5.0

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N

Advisory provided by GitHub Security Advisory Database. Published: April 1, 2025, Modified: April 1, 2025

Social Media Intelligence

Real-time discussions and threat intelligence from social platforms

2 posts
Reddit 2 weeks, 2 days ago
lung1nspector

[Release] dirtyZero v1.1 out now! **dirtyZero v1.1 is out now!** dirtyZero is a simple customization toolbox that utilizes [CVE-2025-24203](https://project-zero.issues.chromium.org/issues/391518636). **Supports iOS 16.0 - iOS 18.3.2.** GitHub Release: [https://github.com/jailbreakdotparty/dirtyZero/releases/tag/v1.1](https://github.com/jailbreakdotparty/dirtyZero/releases/tag/v1.1) This update brings a redesigned UI, new tweaks (especially for the control center), improved tweak application and logging, and more! Brought to …

230
65
360.0
Reddit 2 months, 4 weeks ago
ShadowStonk
Exploit

[UPCOMING] Semi-permanently hide dock on iOS 17.0 This will only be useful for those of us who use the RootHide BootStrap on iOS 17.0 who still lack SpringBoard injection. Since the release of Ian Beer’s recent CVE-2025-24203, the only thing which I’ve used it for (in apps such as mdc0 …

24
7
38.0
View Original High Risk

References

Published: 2025-03-31T22:24:18.620Z
Last Modified: 2025-04-01T15:02:14.564Z
Copied to clipboard!