PT-2025-3050 · Apple · Visionos+8

0X3C3E

+1

·

Published

2024-12-11

·

Updated

2025-01-28

·

CVE-2024-54541

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions macOS Ventura versions prior to 13.7.2 visionOS versions prior to 2.2 tvOS versions prior to 18.2 watchOS versions prior to 11.2 iOS versions prior to 18.2 iPadOS versions prior to 18.2 macOS Sonoma versions prior to 14.7.2 macOS Sequoia versions prior to 15.2
Description The issue is related to errors in state management, which may allow an app to access user-sensitive data. An attacker could exploit this issue to gain access to confidential information.
Recommendations For macOS Ventura versions prior to 13.7.2, update to version 13.7.2 or later. For visionOS versions prior to 2.2, update to version 2.2 or later. For tvOS versions prior to 18.2, update to version 18.2 or later. For watchOS versions prior to 11.2, update to version 11.2 or later. For iOS versions prior to 18.2, update to version 18.2 or later. For iPadOS versions prior to 18.2, update to version 18.2 or later. For macOS Sonoma versions prior to 14.7.2, update to version 14.7.2 or later. For macOS Sequoia versions prior to 15.2, update to version 15.2 or later.

Fix

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

BDU:2025-01377
CVE-2024-54541

Affected Products

Apple Macos
Ios
Ipados
Macos Sequoia
Macos Sonoma
Macos Ventura
Tvos
Visionos
Watchos