This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sonoma 14.6. An app may be able to access protected user data.
Metrics
Affected Vendors & Products
References
History
Mon, 12 Aug 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
Vendors & Products |
Apple
Apple macos |
|
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2024-07-29T22:16:28.477Z
Updated: 2024-08-02T00:41:55.392Z
Reserved: 2024-02-26T15:32:28.541Z
Link: CVE-2024-27872
Vulnrichment
Updated: 2024-08-02T00:41:55.392Z
NVD
Status : Modified
Published: 2024-07-29T23:15:10.557
Modified: 2024-11-21T09:05:18.997
Link: CVE-2024-27872
Redhat
No data.