CVE-2025-24242

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app with root privileges may be able to access private information.
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

03 Nov 2025, 22:18

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2025/Apr/8 -

Information

Published : 2025-03-31 23:15

Updated : 2025-11-03 22:18


NVD link : CVE-2025-24242

Mitre link : CVE-2025-24242

CVE.ORG link : CVE-2025-24242


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')