File Handling Vulnerability in macOS Products by Apple
CVE-2025-24279
4.3MEDIUM
Summary
This vulnerability pertains to an issue in certain macOS versions where improper file handling may allow an application to access contacts without the user's consent. Apple has addressed this vulnerability in the latter versions of macOS, ensuring that user data remains secure and inaccessible to unauthorized applications.
Affected Version(s)
macOS < 15.4
macOS < 14.7
macOS < 13.7
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved