A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Ventura 13.7.5, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to gain root privileges.
                
            References
                    | Link | Resource | 
|---|---|
| https://support.apple.com/en-us/122371 | Release Notes Vendor Advisory | 
| https://support.apple.com/en-us/122373 | Release Notes Vendor Advisory | 
| https://support.apple.com/en-us/122374 | Release Notes Vendor Advisory | 
| https://support.apple.com/en-us/122375 | Release Notes Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    04 Apr 2025, 18:13
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
| References | () https://support.apple.com/en-us/122371 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122373 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122374 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122375 - Release Notes, Vendor Advisory | |
| First Time | Apple ipados Apple macos Apple iphone Os Apple | 
03 Apr 2025, 18:15
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | |
| CWE | CWE-281 | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.8 | 
31 Mar 2025, 23:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-03-31 23:15
Updated : 2025-04-04 18:13
NVD link : CVE-2025-30456
Mitre link : CVE-2025-30456
CVE.ORG link : CVE-2025-30456
JSON object : View
Products Affected
                apple
- macos
- iphone_os
- ipados
CWE
                
                    
                        
                        CWE-281
                        
            Improper Preservation of Permissions
