ID:11161 - Exploit for Improper Verification of Cryptographic Signature in Apple iOS and iPadOS - CVE-2023-41991
Published: February 21, 2025
Apple iOS
iPadOS
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker application to bypass implemented security restrictions.
The vulnerability exists due to improper verification of cryptographic signature within the Security component. A remote attacker can create a specially crafted application that can bypass signature validation process, trick the victim into installing it and compromise the affected system.
Note, the vulnerability is being actively exploited in the wild.