CVE-2025-43259

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An attacker with physical access to a locked device may be able to view sensitive user information.
References
Link Resource
https://support.apple.com/en-us/124149 Release Notes Vendor Advisory
https://support.apple.com/en-us/124150 Release Notes Vendor Advisory
https://support.apple.com/en-us/124151 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

01 Aug 2025, 14:33

Type Values Removed Values Added
First Time Apple
Apple macos
References () https://support.apple.com/en-us/124149 - () https://support.apple.com/en-us/124149 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/124150 - () https://support.apple.com/en-us/124150 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/124151 - () https://support.apple.com/en-us/124151 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

30 Jul 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.6
Summary
  • (es) Este problema se solucionó mejorando la redacción de información confidencial. Este problema se solucionó en macOS Sequoia 15.6, macOS Sonoma 14.7.7 y macOS Ventura 13.7.7. Un atacante con acceso físico a un dispositivo bloqueado podría acceder a información confidencial del usuario.
CWE CWE-359

30 Jul 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-30 00:15

Updated : 2025-08-01 14:33


NVD link : CVE-2025-43259

Mitre link : CVE-2025-43259

CVE.ORG link : CVE-2025-43259


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-359

Exposure of Private Personal Information to an Unauthorized Actor