CVE-2025-24122: Input Validation
A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. An app may be able to modify protected parts of the file system.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24122?
CVE-2025-24122 is considered a moderate severity vulnerability due to its potential impact on file system protections.
How do I fix CVE-2025-24122?
To fix CVE-2025-24122, update your system to macOS Ventura 13.7.3, macOS Sequoia 15.3, or macOS Sonoma 14.7.3.
What types of devices are affected by CVE-2025-24122?
CVE-2025-24122 affects Intel-based Mac computers running specific versions of macOS.
What is the nature of the vulnerability in CVE-2025-24122?
CVE-2025-24122 is a downgrade issue that allows an app to modify protected areas of the file system.
Are older versions of macOS vulnerable to CVE-2025-24122?
Yes, older versions before the patched releases are vulnerable to CVE-2025-24122.