PT-2025-3029 · Apple · Macos Ventura+3

Pwnrin

·

Published

2024-12-11

·

Updated

2025-01-27

·

CVE-2024-54475

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS Sonoma versions prior to 14.7.2 macOS Sequoia versions prior to 15.2 macOS Ventura versions prior to 13.7.2
Description A privacy issue was addressed with improved private data redaction for log entries. This issue may allow an app to determine a user’s current location. The vulnerability is related to the disclosure of password values in log files, which could allow an attacker to gain unauthorized access to protected information.
Recommendations For macOS Sonoma versions prior to 14.7.2, update to version 14.7.2 to resolve the issue. For macOS Sequoia versions prior to 15.2, update to version 15.2 to resolve the issue. For macOS Ventura versions prior to 13.7.2, update to version 13.7.2 to resolve the issue.

Fix

Information Disclosure

Insertion into Log File

Weakness Enumeration

Related Identifiers

BDU:2025-01489
CVE-2024-54475

Affected Products

Apple Macos
Macos Sequoia
Macos Sonoma
Macos Ventura