PT-2024-31059 · Apple · Macos Sequoia+1
Toomas Römer
·
Published
2024-10-28
·
Updated
2025-01-06
·
CVE-2024-44231
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS Sequoia versions prior to 15.1
Description
This issue was addressed through improved state management. A person with physical access to a Mac may be able to bypass Login Window during a software update.
Recommendations
For versions prior to 15.1, update to macOS Sequoia 15.1 to resolve the issue. As a temporary workaround, consider restricting physical access to Mac devices to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos
Macos Sequoia