A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to break out of its sandbox.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Nov 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 16 Dec 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Dec 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apple
Apple macos |
|
| Metrics |
cvssV3_1
|
Wed, 11 Dec 2024 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to break out of its sandbox. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2024-12-11T22:58:15.810Z
Updated: 2025-11-03T22:30:54.344Z
Reserved: 2024-12-03T22:50:35.499Z
Link: CVE-2024-54498
Updated: 2024-12-16T18:34:17.142Z
Status : Modified
Published: 2024-12-12T02:15:30.683
Modified: 2025-11-03T23:17:26.410
Link: CVE-2024-54498
No data.