PT-2024-31009 · Apple · Apple Macos
Csaba Fitzl
+1
·
Published
2024-09-16
·
Updated
2025-07-30
·
CVE-2024-44175
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 14.7.1
macOS versions prior to 15
Description
This issue is related to improved validation of symlinks. An app may be able to access sensitive user data due to a TOCTOU vulnerability in macOS's diskarbitrationd, enabling sandbox escape and privilege escalation attacks through the exploitation of symbolic links.
Recommendations
For macOS versions prior to 14.7.1, update to macOS 14.7.1 or later.
For macOS versions prior to 15, update to macOS 15 or later.
As a temporary workaround, consider restricting the use of the
os.symlink() function until a patch is available.
Avoid using the os.symlink() function in sensitive areas of the system until the issue is resolved.Fix
Insecure Storage of Sensitive Information
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos