CVE-2025-24145

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.3, iOS 18.3 and iPadOS 18.3. An app may be able to view a contact's phone number in system logs.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

30 Jan 2025, 18:04

Type Values Removed Values Added
First Time Apple
Apple macos
Apple ipados
Apple iphone Os
References () https://support.apple.com/en-us/122066 - () https://support.apple.com/en-us/122066 - Release Notes
References () https://support.apple.com/en-us/122068 - () https://support.apple.com/en-us/122068 - Release Notes
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CWE CWE-532
Summary
  • (es) Se solucionó un problema de privacidad con una mejor redacción de datos privados para las entradas de registro. Este problema se solucionó en macOS Sequoia 15.3, iOS 18.3 y iPadOS 18.3. Es posible que una aplicación pueda ver el número de teléfono de un contacto en los registros de sistema.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-02-04 22:15


NVD link : CVE-2025-24145

Mitre link : CVE-2025-24145

CVE.ORG link : CVE-2025-24145


JSON object : View

Products Affected

apple

  • macos
  • iphone_os
  • ipados
CWE
CWE-532

Insertion of Sensitive Information into Log File