CVE-2024-44243Apple Macos vulnerability

8 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.1%
top 64.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 12
Latest updateJul 28

Description

A configuration issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.3. An app may be able to modify protected parts of the file system.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

Appleapple/macos_sonoma14.7.3
CVEListV5apple/macos< 14.7.3+1
NVDapple/macos15.015.2

🔴Vulnerability Details

1
GHSA
GHSA-j3cp-346p-h999: A configuration issue was addressed with additional restrictions2024-12-12

📋Vendor Advisories

2
Apple
CVE-2024-44243: macOS Sonoma 14.7.32025-01-27
Apple
CVE-2024-44243: macOS Sequoia 15.22024-12-11

🕵️Threat Intelligence

4
Bleepingcomputer
Microsoft: macOS Sploitlight flaw leaks Apple Intelligence data2025-07-28
Microsoft
Analyzing CVE-2024-44243, a macOS System Integrity Protection bypass through kernel extensions | Microsoft Security Blog2025-01-13
Bleepingcomputer
Microsoft: macOS bug lets hackers install malicious kernel drivers2025-01-13
Microsoft
Analyzing CVE-2024-44243, a macOS System Integrity Protection bypass through kernel extensions2025-01-13