An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
History
Thu, 31 Jul 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
Wed, 30 Jul 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 | |
| Metrics |
cvssV3_1
|
Wed, 30 Jul 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Apple macos Sequoia Apple macos Sonoma Apple macos Ventura |
|
| Vendors & Products |
Apple
Apple macos Apple macos Sequoia Apple macos Sonoma Apple macos Ventura |
Tue, 29 Jul 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to access sensitive user data. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2025-07-29T23:35:37.194Z
Updated: 2025-07-30T18:06:43.518Z
Reserved: 2025-04-16T15:24:37.087Z
Link: CVE-2025-43195
Updated: 2025-07-30T13:24:29.870Z
Status : Analyzed
Published: 2025-07-30T00:15:32.377
Modified: 2025-07-31T20:48:48.373
Link: CVE-2025-43195
No data.