CVE-2025-24153

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.3. An app with root privileges may be able to execute arbitrary code with kernel privileges.
References
Link Resource
https://support.apple.com/en-us/122068 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

30 Jan 2025, 16:55

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.7
References () https://support.apple.com/en-us/122068 - () https://support.apple.com/en-us/122068 - Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CWE CWE-120
Summary
  • (es) Se solucionó un problema de desbordamiento de búfer mejorando la gestión de la memoria. Este problema se solucionó en macOS Sequoia 15.3. Una aplicación con privilegios de superusuario puede ejecutar código arbitrario con privilegios de kernel.
First Time Apple macos
Apple

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-02-04 21:15


NVD link : CVE-2025-24153

Mitre link : CVE-2025-24153

CVE.ORG link : CVE-2025-24153


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')