CVE-2024-54525: Apple iPadOS

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A logic issue was addressed with improved file handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. Restoring a maliciously crafted backup file may lead to modification of protected system files.

Affected products

  • Apple iPadOS: before 18.2 (fixed in 18.2)
  • Apple iPhone OS: before 18.2 (fixed in 18.2)
  • Apple macOS: before 15.2 (fixed in 15.2)
  • Apple tvOS: before 18.2 (fixed in 18.2)
  • Apple visionOS: before 2.2 (fixed in 2.2)
  • Apple watchOS: before 11.2 (fixed in 11.2)

Published 2025-03-17. Last modified 2026-06-17.