First published: Mon Jan 27 2025(Updated: )
A logic issue was addressed with improved file handling. This issue is fixed in macOS Ventura 13.7.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sonoma 14.7.2, macOS Sequoia 15.2. Photos in the Hidden Photos Album may be viewed without authentication.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS | <13.7.2 | |
Apple iOS | <18.2 | |
Apple iPadOS | <18.2 | |
Apple iPadOS | <17.7.3 | |
Apple macOS | <14.7.2 | |
<15.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-54488 is classified as a critical vulnerability due to its potential to expose sensitive information.
To mitigate CVE-2024-54488, users should update to macOS Ventura 13.7.2, iOS 18.2, iPadOS 18.2, macOS Sonoma 14.7.2, or macOS Sequoia 15.2.
CVE-2024-54488 affects macOS Ventura, iOS, iPadOS, macOS Sonoma, and macOS Sequoia by allowing unauthorized access to Hidden Photos.
If your device is running an affected version prior to the fixes, it is vulnerable to CVE-2024-54488.
CVE-2024-54488 is a logic issue related to improper file handling that can lead to unauthorized access of Photos.