CVE-2025-31184

This issue was addressed with improved permissions checking. This issue is fixed in Safari 18.4, visionOS 2.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may gain unauthorized access to Local Network.
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*

Configuration 5 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

15 Apr 2025, 14:20

Type Values Removed Values Added
CPE cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
First Time Apple macos
Apple iphone Os
Apple ipados
Apple
Apple safari
Apple visionos
References () https://support.apple.com/en-us/122371 - () https://support.apple.com/en-us/122371 - Vendor Advisory
References () https://support.apple.com/en-us/122373 - () https://support.apple.com/en-us/122373 - Vendor Advisory
References () https://support.apple.com/en-us/122378 - () https://support.apple.com/en-us/122378 - Vendor Advisory
References () https://support.apple.com/en-us/122379 - () https://support.apple.com/en-us/122379 - Vendor Advisory

07 Apr 2025, 19:15

Type Values Removed Values Added
Summary
  • (es) Este problema se solucionó mejorando la comprobación de permisos. Este problema está corregido en Safari 18.4, visionOS 2.4, iOS 18.4, iPadOS 18.4 y macOS Sequoia 15.4. Una aplicación podría obtener acceso no autorizado a la red local.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CWE CWE-281

31 Mar 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-31 23:15

Updated : 2025-04-15 14:20


NVD link : CVE-2025-31184

Mitre link : CVE-2025-31184

CVE.ORG link : CVE-2025-31184


JSON object : View

Products Affected

apple

  • visionos
  • ipados
  • macos
  • safari
  • iphone_os
CWE
CWE-281

Improper Preservation of Permissions