PT-2024-31009 · Apple · Apple Macos

Csaba Fitzl

+1

·

Published

2024-09-16

·

Updated

2025-07-30

·

CVE-2024-44175

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 14.7.1 macOS versions prior to 15
Description This issue is related to improved validation of symlinks. An app may be able to access sensitive user data due to a TOCTOU vulnerability in macOS's diskarbitrationd, enabling sandbox escape and privilege escalation attacks through the exploitation of symbolic links.
Recommendations For macOS versions prior to 14.7.1, update to macOS 14.7.1 or later. For macOS versions prior to 15, update to macOS 15 or later. As a temporary workaround, consider restricting the use of the os.symlink() function until a patch is available. Avoid using the os.symlink() function in sensitive areas of the system until the issue is resolved.

Fix

Insecure Storage of Sensitive Information

Link Following

Weakness Enumeration

Related Identifiers

CVE-2024-44175

Affected Products

Apple Macos