This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.1. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
History
Wed, 30 Oct 2024 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-59 |
Wed, 30 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos |
|
Weaknesses | CWE-922 | |
CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
Vendors & Products |
Apple
Apple macos |
|
Metrics |
cvssV3_1
|
Mon, 28 Oct 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.1. An app may be able to access sensitive user data. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2024-10-28T21:08:20.253Z
Updated: 2024-10-30T15:50:37.752Z
Reserved: 2024-08-20T21:42:05.927Z
Link: CVE-2024-44175
Vulnrichment
Updated: 2024-10-30T15:50:29.659Z
NVD
Status : Analyzed
Published: 2024-10-28T21:15:05.737
Modified: 2024-10-30T17:14:55.127
Link: CVE-2024-44175
Redhat
No data.