cbcvebase.
CVE-2025-24258
published 2025-05-12

CVE-2025-24258: A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. An app…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.17%
7.2th percentile
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. An app may be able to gain root privileges.

Affected

11 ranges
VendorProductVersion rangeFixed in
applemacos< 14.7.614.7.6
applemacos< 15.415.4
applemacos< 13.7.613.7.6
applemacos>= 14.0 < 14.7.614.7.6
applemacos>= 15.0 < 15.415.4
applemacos_sequoia
applemacos_sonoma
applemacos_ventura
msrcazl3_freeglut_3.4.0-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_msrc7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.