CVE-2024-54537

Description

This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2. An app may be able to read and write files outside of its sandbox.

Risk Information

Base Score
8.2
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
EPSS Score
Exploitation Probability
0.057

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in Mac OS - Ventura (Software Update) - AutoReboot (13.7.2)Mac
Multiple vulnerabilities are fixed in Mac OS - Sonoma (Software Update) - AutoReboot (14.7.2)Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-611601Mac OS - Ventura 13.7.7 (Software Update) (Auto Reboot)(Deployment-Only)
PATCH-612607Mac OS - Sonoma 14.8.2 (Software Update)(Auto Reboot)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234