PT-2024-36343 · Apple · Apple Macos
Michael Cohen
·
Published
2024-12-11
·
Updated
2024-12-18
·
CVE-2024-54466
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
macOS versions prior to 13.7.2
macOS versions prior to 14.7.2
macOS versions prior to 15.2
Description:
An authorization issue was addressed with improved state management. This issue allows a different user to access an encrypted volume without prompting for the password.
Recommendations:
For macOS versions prior to 13.7.2, update to macOS Ventura 13.7.2 or later.
For macOS versions prior to 14.7.2, update to macOS Sonoma 14.7.2 or later.
For macOS versions prior to 15.2, update to macOS Sequoia 15.2 or later.
Fix
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos