Exploitation Summary
EIP tracks 2 public exploits for CVE-2025-24257. PoCs published by adminlove520, Learningdisordercapital35.
AI-analyzed exploit summary The repository lacks actual exploit code and instead directs users to an external GitHub repository for downloads. It provides generic setup instructions without technical details about the vulnerability or exploit mechanics.
Description
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. An app may be able to cause unexpected system termination or write kernel memory.
Exploits (2)
The repository lacks actual exploit code and instead directs users to an external GitHub repository for downloads. It provides generic setup instructions without technical details about the vulnerability or exploit mechanics.
The repository lacks actual exploit code and instead directs users to an external download link. It provides vague, non-technical instructions for running a PoC without detailing the vulnerability mechanics, affected functions, or exploitation steps.
References (8)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H