CVE Vulnerabilities

CVE-2025-24115

Published: Jan 27, 2025 | Modified: Mar 18, 2025
CVSS 3.x
6.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A path handling issue was addressed with improved validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to read files outside of its sandbox.

Affected Software

Name Vendor Start Version End Version
Macos Apple * 13.7.3 (excluding)
Macos Apple 14.0 (including) 14.7.3 (excluding)
Macos Apple 15.0 (including) 15.3 (excluding)

References