CVE-2025-24131
- EPSS 0.16%
- Published 27.01.2025 22:15:18
- Last modified 05.02.2025 16:15:42
The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An attacker in a privileged position may be able to perform a denial-of-service.
CVE-2025-24134
- EPSS 0.03%
- Published 27.01.2025 22:15:18
- Last modified 13.03.2025 19:15:51
An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.3. An app may be able to access user-sensitive data.
CVE-2025-24135
- EPSS 0.02%
- Published 27.01.2025 22:15:18
- Last modified 25.03.2025 14:15:28
This issue was addressed with improved message validation. This issue is fixed in macOS Sequoia 15.3. An app may be able to gain elevated privileges.
CVE-2025-24136
- EPSS 0.03%
- Published 27.01.2025 22:15:18
- Last modified 04.02.2025 22:15:42
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. A malicious app may be able to create symlinks to protected regions of the disk.
- EPSS 0.2%
- Published 27.01.2025 22:15:18
- Last modified 24.03.2025 15:02:51
A type confusion issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected appli...
CVE-2025-24138
- EPSS 0.02%
- Published 27.01.2025 22:15:18
- Last modified 24.03.2025 17:15:20
This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. A malicious application may be able to leak sensitive user information.
CVE-2025-24139
- EPSS 0.02%
- Published 27.01.2025 22:15:18
- Last modified 24.03.2025 18:15:23
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. Parsing a maliciously crafted file may lead to an unexpected app termination.
CVE-2025-24140
- EPSS 0.08%
- Published 27.01.2025 22:15:18
- Last modified 03.02.2025 20:15:37
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3. Files downloaded from the internet may not have the quarantine flag applied.
CVE-2025-24143
- EPSS 0.1%
- Published 27.01.2025 22:15:18
- Last modified 04.02.2025 22:15:42
The issue was addressed with improved access restrictions to the file system. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. A maliciously crafted webpage may be able to fingerprint the user.
CVE-2025-24145
- EPSS 0.03%
- Published 27.01.2025 22:15:18
- Last modified 04.02.2025 22:15:42
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.3, iOS 18.3 and iPadOS 18.3. An app may be able to view a contact's phone number in system logs.