CVE-2024-44195

A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.1. An app may be able to read arbitrary files.
References
Link Resource
https://support.apple.com/en-us/121564 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:15.0:*:*:*:*:*:*:*

History

23 Jan 2025, 20:38

Type Values Removed Values Added
CWE NVD-CWE-noinfo
References () https://support.apple.com/en-us/121564 - () https://support.apple.com/en-us/121564 - Vendor Advisory
Summary
  • (es) Se solucionó un problema de lógica mejorando la validación. Este problema se solucionó en macOS Sequoia 15.1. Es posible que una aplicación pueda leer archivos arbitrarios.
First Time Apple macos
Apple
CPE cpe:2.3:o:apple:macos:15.0:*:*:*:*:*:*:*

20 Dec 2024, 17:15

Type Values Removed Values Added
CWE CWE-22
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

20 Dec 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-20 04:15

Updated : 2025-01-23 20:38


NVD link : CVE-2024-44195

Mitre link : CVE-2024-44195

CVE.ORG link : CVE-2024-44195


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')