This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to access protected user data.
Metrics
Affected Vendors & Products
References
History
Mon, 07 Apr 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos |
|
CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
Vendors & Products |
Apple
Apple macos |
Tue, 01 Apr 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-200 | |
Metrics |
cvssV3_1
|
Mon, 31 Mar 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to access protected user data. | |
References |
|

Status: PUBLISHED
Assigner: apple
Published:
Updated: 2025-04-01T13:38:21.770Z
Reserved: 2025-01-17T00:00:45.013Z
Link: CVE-2025-24253

Updated: 2025-04-01T13:38:15.564Z

Status : Analyzed
Published: 2025-03-31T23:15:22.283
Modified: 2025-04-07T13:36:08.660
Link: CVE-2025-24253

No data.