CVE-2025-43446

Source
https://cve.org/CVERecord?id=CVE-2025-43446
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-43446.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-43446
Published
2025-11-04T02:15:50.353Z
Modified
2026-03-15T22:50:47.505661Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.7.2, macOS Tahoe 26.1, macOS Sonoma 14.8.2. An app may be able to modify protected parts of the file system.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "14.8.2"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "15.0"
            },
            {
                "fixed": "15.7.2"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-43446.json"