Logic Issue in macOS Products Exposing Root Privilege Risks
CVE-2025-43248

7.8HIGH

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
30 July 2025

What is CVE-2025-43248?

A logic issue in macOS has been identified, allowing a malicious application to potentially gain unauthorized root privileges. This vulnerability has been corrected with improved restrictions in the latest updates for macOS Sequoia 15.6 and macOS Sonoma 14.7.7. Users are encouraged to update their systems promptly to mitigate any security risks associated with this vulnerability.

Affected Version(s)

macOS < 15.6

macOS < 14.7

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.