CVE-2025-24115

A path handling issue was addressed with improved validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to read files outside of its sandbox.
References
Link Resource
https://support.apple.com/en-us/122068 Release Notes Vendor Advisory
https://support.apple.com/en-us/122069 Release Notes Vendor Advisory
https://support.apple.com/en-us/122070 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

18 Mar 2025, 19:15

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CWE-125
References () https://support.apple.com/en-us/122068 - () https://support.apple.com/en-us/122068 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/122069 - () https://support.apple.com/en-us/122069 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/122070 - () https://support.apple.com/en-us/122070 - Release Notes, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.3
First Time Apple macos
Apple
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

18 Feb 2025, 20:15

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : 5.5
v2 : unknown
v3 : unknown

28 Jan 2025, 16:15

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
Summary
  • (es) Se solucionó un problema de gestión de rutas con una validación mejorada. Este problema se solucionó en macOS Ventura 13.7.3, macOS Sequoia 15.3 y macOS Sonoma 14.7.3. Es posible que una aplicación pueda leer archivos fuera de su sandbox.

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-03-18 19:15


NVD link : CVE-2025-24115

Mitre link : CVE-2025-24115

CVE.ORG link : CVE-2025-24115


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-125

Out-of-bounds Read