First published: Tue Mar 18 2025(Updated: )
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. Interaction with the ImageIO framework is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2024-54499.
Affected Software | Affected Version | How to fix |
---|---|---|
macOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-25661 is high due to its potential for remote information disclosure.
To remediate ZDI-CAN-25661, ensure that your Apple macOS is updated to the latest version provided by Apple.
ZDI-CAN-25661 allows remote attackers to disclose sensitive information from affected installations of Apple macOS.
Attack vectors for ZDI-CAN-25661 vary depending on the implementation but require interaction with the ImageIO framework.
All users running affected versions of Apple macOS may be susceptible to the ZDI-CAN-25661 vulnerability.