CVE-2025-24191

The issue was addressed with improved validation of environment variables. This issue is fixed in macOS Sequoia 15.4. An app may be able to modify protected parts of the file system.
References
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

03 Nov 2025, 21:19

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2025/Apr/8 -
References () https://support.apple.com/en-us/122373 - Vendor Advisory, Release Notes () https://support.apple.com/en-us/122373 - Release Notes, Vendor Advisory

Information

Published : 2025-03-31 23:15

Updated : 2025-11-03 21:19


NVD link : CVE-2025-24191

Mitre link : CVE-2025-24191

CVE.ORG link : CVE-2025-24191


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-20

Improper Input Validation