Physical Access Vulnerability in MacOS Sequoia Affecting Security Management

CVE-2024-44231

Currently unrated 🤨

Key Information

Vendor
Apple
Status
Mac OS
Vendor
CVE Published:
20 December 2024

Summary

CVE-2024-44231 is a high-severity vulnerability affecting macOS Sequoia 15.1 that arises when an attacker with physical access attempts to bypass the system's Login Window during a software update process. The flaw exists due to inadequate state management during software updates, which could potentially allow an unauthorized user to access sensitive information or perform unauthorized actions. Apple has issued a fix in version 15.1 to mitigate this issue. It is critical for users to ensure their systems are updated to safeguard against this vulnerability.

Affected Version(s)

macOS < 15.1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database
.