The issue was addressed with improved validation of environment variables. This issue is fixed in macOS Sequoia 15.4. An app may be able to modify protected parts of the file system.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/122373 | Vendor Advisory Release Notes |
Configurations
History
04 Apr 2025, 18:24
Type | Values Removed | Values Added |
---|---|---|
First Time |
Apple macos
Apple |
|
References | () https://support.apple.com/en-us/122373 - Vendor Advisory, Release Notes | |
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
03 Apr 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-20 | |
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
31 Mar 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-31 23:15
Updated : 2025-04-04 18:24
NVD link : CVE-2025-24191
Mitre link : CVE-2025-24191
CVE.ORG link : CVE-2025-24191
JSON object : View
Products Affected
apple
- macos
CWE
CWE-20
Improper Input Validation