First published: Mon Jan 27 2025(Updated: )
Accessibility. An authentication issue was addressed with improved state management.
Credit: Uri Katz (Oligo Security) Minghao Lin @Y1nKoc Zhejiang Universitybabywu Zhejiang University Zhejiang UniversityXingwei Lin Zhejiang UniversityGoogle Threat Analysis Group Desmond Trend Micro Zero Day InitiativePwn2car & Rotiple (HyeongSeok Jang) Trend Micro Zero Day InitiativeCVE-2025-24085 Song Hyun Bae @bshyuunn Lee Dong Ha (Who4mI) Wang Yu CyberservalDongJun Kim @smlijun JongSeong Kim in Enki WhiteHat @nevul37 D4m0n Mateusz Krzywicki @krzywix an anonymous researcher pattern-f @pattern_F_ Michael (Biscuit) Thomas @social.lol) @biscuit Guilherme Rambo Best Buddy AppsIvan Fratric Google Project ZeroHichem Maloufi Hakim Boukhadra Mickey Jin @patch1t mastersplinter Jason Gendron @gendron_jason 이준성 (Junsung Lee) @RenwaX23 Michael DePlante @izobashi Trend Micro Zero Day InitiativeKirin @Pwnrin Q1IQ @q1iqF NUS CuriOSityP1umer @p1umer Imperial Global Singaporelinjy HKUS3Labchluo WHUSecLabJohan Carlsson (joaxcar) Abhay Kailasia @abhay_kailasia C
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and iPadOS | <18.3 | 18.3 |
Apple iOS, iPadOS, and macOS | <18.3 | 18.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2025-31185 is considered a high-severity vulnerability due to its potential impact on authentication and system stability.
To fix CVE-2025-31185, update your Apple iOS or iPadOS to version 18.3 or later.
CVE-2025-31185 addresses authentication issues, null pointer dereferences, type confusion, and input validation problems.
CVE-2025-31185 affects Apple iOS and iPadOS versions prior to 18.3.
Yes, CVE-2025-31185 specifically involves vulnerabilities related to AirPlay functionalities.