VDB

CISA-2025-24122

CISA-2025-24122 PUBLISHED CVSS 5.5 MEDIUM

Reported by apple · Published January 27, 2025

A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to modify protected parts of the file system.

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Affected Products

VendorProductVersions
ApplemacOSunspecified
ApplemacOSunspecified
ApplemacOSunspecified
ApplemacOSunspecified, unspecified, unspecified

Timeline

  • Jan 27, 2025 CVE Published
  • Nov 3, 2025 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›