Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 20 of 48
CVE-2025-24112MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24112 [MEDIUM] CVE-2025-24112: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24112
Component: AppleGraphicsControl
Impact: Parsing a file may lead to an unexpected app termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24106MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24106 [MEDIUM] CVE-2025-24106: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24106
Component: Audio
Impact: An app may be able to cause unexpected system termination
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24160MEDIUMCVSS 4.3v14.7.32025-01-27
CVE-2025-24160 [MEDIUM] CVE-2025-24160: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24160
Component: CoreAudio
Impact: Parsing a file may lead to an unexpected app termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24136MEDIUMCVSS 4.4v14.7.32025-01-27
CVE-2025-24136 [MEDIUM] CVE-2025-24136: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24136
Component: Login Window
Impact: A malicious app may be able to create symlinks to protected regions of the disk
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24109MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24109 [MEDIUM] CVE-2025-24109: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24109
Component: AppleMobileFileIntegrity
Impact: An app may be able to access sensitive user data
Description: A downgrade issue was addressed with additional code-signing restrictions.
apple
CVE-2025-24103MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24103 [MEDIUM] CVE-2025-24103: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24103
Component: Security
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24115MEDIUMCVSS 6.3v14.7.32025-01-27
CVE-2025-24115 [MEDIUM] CVE-2025-24115: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24115
Component: LaunchServices
Impact: An app may be able to read files outside of its sandbox
Description: A path handling issue was addressed with improved validation.
apple
CVE-2024-44243MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2024-44243 [MEDIUM] CVE-2024-44243: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2024-44243
Component: StorageKit
Impact: An app may be able to modify protected parts of the file system
Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2025-24151MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24151 [MEDIUM] CVE-2025-24151: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24151
Component: SMB
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24116MEDIUMCVSS 4.4v14.7.32025-01-27
CVE-2025-24116 [MEDIUM] CVE-2025-24116: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24116
Component: LaunchServices
Impact: An app may be able to bypass Privacy preferences
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43374MEDIUMCVSS 4.3v14.7.32025-01-27
CVE-2025-43374 [MEDIUM] CVE-2025-43374: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-43374
Component: Wi-Fi
Impact: An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-24123MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24123 [MEDIUM] CVE-2025-24123: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24123
Component: CoreMedia
Impact: Parsing a file may lead to an unexpected app termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24161MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24161 [MEDIUM] CVE-2025-24161: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24161
Component: CoreAudio
Impact: Parsing a file may lead to an unexpected app termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24185MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24185 [MEDIUM] CVE-2025-24185: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24185
Component: Security
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24114MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24114 [MEDIUM] CVE-2025-24114: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24114
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24130MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24130 [MEDIUM] CVE-2025-24130: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24130
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2025-24100LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24100 [LOW] CVE-2025-24100: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24100
Component: AppleMobileFileIntegrity
Impact: An app may be able to access information about a user's contacts
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2025-24121LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24121 [LOW] CVE-2025-24121: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24121
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44172LOWCVSS 3.3v14.7.32025-01-27
CVE-2024-44172 [LOW] CVE-2024-44172: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2024-44172
Component: Contacts
Impact: An app may be able to access contacts
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-54538HIGHCVSS 7.5v14.7.12024-10-28
CVE-2024-54538 [HIGH] CVE-2024-54538: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-54538
Component: Security
Impact: A remote attacker may be able to cause a denial-of-service
Description: A denial-of-service issue was addressed with improved input validation.
apple