An integer overflow was addressed through improved input validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to elevate privileges.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/122068 | Vendor Advisory |
| https://support.apple.com/en-us/122069 | Vendor Advisory |
| https://support.apple.com/en-us/122070 | Vendor Advisory |
| http://seclists.org/fulldisclosure/2025/Jan/15 | |
| http://seclists.org/fulldisclosure/2025/Jan/16 | |
| http://seclists.org/fulldisclosure/2025/Jan/17 |
Configurations
Configuration 1 (hide)
|
History
03 Nov 2025, 21:19
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
30 Jan 2025, 16:43
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.apple.com/en-us/122068 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122069 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122070 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
| First Time |
Apple
Apple macos |
|
| CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
28 Jan 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| CWE | CWE-190 |
27 Jan 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-01-27 22:15
Updated : 2025-11-03 21:19
NVD link : CVE-2025-24156
Mitre link : CVE-2025-24156
CVE.ORG link : CVE-2025-24156
JSON object : View
Products Affected
apple
- macos
CWE
CWE-190
Integer Overflow or Wraparound
