CVE-2025-24165
Analyzed
Analyzed - Analysis Complete
Unexpected System Termination in macOS
Vulnerability report for CVE-2025-24165, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-06-11
Last updated on: 2026-06-15
Assigner: Apple Inc.
Description
Description
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to cause unexpected system termination.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| apple | macos | From 13.0 (inc) to 13.7.5 (exc) |
| apple | macos | From 14.0 (inc) to 14.7.5 (exc) |
| apple | macos | From 15.0 (inc) to 15.4 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |