Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 20 of 48
CVE-2025-24112MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24112 [MEDIUM] CVE-2025-24112: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24112 Component: AppleGraphicsControl Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24106MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24106 [MEDIUM] CVE-2025-24106: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24106 Component: Audio Impact: An app may be able to cause unexpected system termination Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24160MEDIUMCVSS 4.3v14.7.32025-01-27
CVE-2025-24160 [MEDIUM] CVE-2025-24160: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24160 Component: CoreAudio Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24136MEDIUMCVSS 4.4v14.7.32025-01-27
CVE-2025-24136 [MEDIUM] CVE-2025-24136: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24136 Component: Login Window Impact: A malicious app may be able to create symlinks to protected regions of the disk Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24109MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24109 [MEDIUM] CVE-2025-24109: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24109 Component: AppleMobileFileIntegrity Impact: An app may be able to access sensitive user data Description: A downgrade issue was addressed with additional code-signing restrictions.
apple
CVE-2025-24103MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24103 [MEDIUM] CVE-2025-24103: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24103 Component: Security Impact: An app may be able to access protected user data Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24115MEDIUMCVSS 6.3v14.7.32025-01-27
CVE-2025-24115 [MEDIUM] CVE-2025-24115: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24115 Component: LaunchServices Impact: An app may be able to read files outside of its sandbox Description: A path handling issue was addressed with improved validation.
apple
CVE-2024-44243MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2024-44243 [MEDIUM] CVE-2024-44243: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2024-44243 Component: StorageKit Impact: An app may be able to modify protected parts of the file system Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2025-24151MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24151 [MEDIUM] CVE-2025-24151: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24151 Component: SMB Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24116MEDIUMCVSS 4.4v14.7.32025-01-27
CVE-2025-24116 [MEDIUM] CVE-2025-24116: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24116 Component: LaunchServices Impact: An app may be able to bypass Privacy preferences Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43374MEDIUMCVSS 4.3v14.7.32025-01-27
CVE-2025-43374 [MEDIUM] CVE-2025-43374: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-43374 Component: Wi-Fi Impact: An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-24123MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24123 [MEDIUM] CVE-2025-24123: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24123 Component: CoreMedia Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24161MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24161 [MEDIUM] CVE-2025-24161: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24161 Component: CoreAudio Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24185MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24185 [MEDIUM] CVE-2025-24185: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24185 Component: Security Impact: An app may be able to access protected user data Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24114MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24114 [MEDIUM] CVE-2025-24114: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24114 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24130MEDIUMCVSS 5.5v14.7.32025-01-27
CVE-2025-24130 [MEDIUM] CVE-2025-24130: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24130 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24100LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24100 [LOW] CVE-2025-24100: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24100 Component: AppleMobileFileIntegrity Impact: An app may be able to access information about a user's contacts Description: A logic issue was addressed with improved restrictions.
apple
CVE-2025-24121LOWCVSS 3.3v14.7.32025-01-27
CVE-2025-24121 [LOW] CVE-2025-24121: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24121 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44172LOWCVSS 3.3v14.7.32025-01-27
CVE-2024-44172 [LOW] CVE-2024-44172: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2024-44172 Component: Contacts Impact: An app may be able to access contacts Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-54538HIGHCVSS 7.5v14.7.12024-10-28
CVE-2024-54538 [HIGH] CVE-2024-54538: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-54538 Component: Security Impact: A remote attacker may be able to cause a denial-of-service Description: A denial-of-service issue was addressed with improved input validation.
apple