CVE-2025-43468
A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app may be able to access sensitive user data.
Credit
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-43468?
The severity of CVE-2025-43468 is classified as high due to the potential for unauthorized access to sensitive user data.
How do I fix CVE-2025-43468?
CVE-2025-43468 can be fixed by updating to macOS Sonoma version 14.8.2 or macOS Sequoia version 15.7.2.
Which systems are affected by CVE-2025-43468?
CVE-2025-43468 affects Intel-based Mac computers running macOS Tahoe, macOS Sequoia, and macOS Sonoma.
What type of issue is outlined in CVE-2025-43468?
CVE-2025-43468 outlines a downgrade issue that may allow applications to access sensitive user data.
When was CVE-2025-43468 addressed by Apple?
CVE-2025-43468 was addressed with additional code-signing restrictions in updates for macOS Sonoma and macOS Sequoia.