This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An app may be able to modify protected parts of the file system.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
Tue, 04 Nov 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Apple macos Sequoia Apple macos Sonoma |
|
| Vendors & Products |
Apple
Apple macos Apple macos Sequoia Apple macos Sonoma |
Tue, 04 Nov 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-59 | |
| Metrics |
cvssV3_1
|
Tue, 04 Nov 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An app may be able to modify protected parts of the file system. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2025-11-04T01:17:39.255Z
Updated: 2025-11-04T13:00:19.992Z
Reserved: 2025-04-16T15:24:37.125Z
Link: CVE-2025-43446
Updated: 2025-11-04T12:59:59.883Z
Status : Analyzed
Published: 2025-11-04T02:15:50.353
Modified: 2025-11-04T17:50:25.583
Link: CVE-2025-43446
No data.