A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to break out of its sandbox.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Dec 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 13 Dec 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
Vendors & Products |
Apple
Apple macos |
|
Metrics |
cvssV3_1
|
Wed, 11 Dec 2024 23:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to break out of its sandbox. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2024-12-11T22:58:15.810Z
Updated: 2024-12-21T04:56:11.314Z
Reserved: 2024-12-03T22:50:35.499Z
Link: CVE-2024-54498
Vulnrichment
Updated: 2024-12-16T18:34:17.142Z
NVD
Status : Modified
Published: 2024-12-12T02:15:30.683
Modified: 2024-12-16T19:15:08.943
Link: CVE-2024-54498
Redhat
No data.