An input validation issue was addressed by removing the vulnerable code. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. A malicious app may be able to gain root privileges.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 03 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
         | 
Tue, 27 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Apple
         Apple macos  | 
|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Apple
         Apple macos  | 
Tue, 13 May 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-20 | |
| Metrics | 
        
        cvssV3_1
         
  | 
Tue, 13 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Mon, 12 May 2025 21:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | An input validation issue was addressed by removing the vulnerable code. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. A malicious app may be able to gain root privileges. | |
| References | 
         | 
Status: PUBLISHED
Assigner: apple
Published: 2025-05-12T21:43:02.055Z
Updated: 2025-11-03T19:44:42.987Z
Reserved: 2025-01-17T00:00:45.017Z
Link: CVE-2025-24274
Updated: 2025-05-13T20:01:17.977Z
Status : Modified
Published: 2025-05-12T22:15:20.440
Modified: 2025-11-03T20:17:55.777
Link: CVE-2025-24274
No data.