Medium severity4.4NVD Advisory· Published Jan 27, 2025· Updated Apr 2, 2026
CVE-2025-24136
CVE-2025-24136
Description
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. A malicious app may be able to create symlinks to protected regions of the disk.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- support.apple.com/en-us/122068nvdRelease Notes
- support.apple.com/en-us/122069nvdRelease Notes
- support.apple.com/en-us/122070nvdRelease Notes
- seclists.org/fulldisclosure/2025/Jan/15nvd
- seclists.org/fulldisclosure/2025/Jan/16nvd
- seclists.org/fulldisclosure/2025/Jan/17nvd
News mentions
0No linked articles in our index yet.