The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An app may be able to access user-sensitive data.
The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor, which exposes security-relevant information about the state of the product, such as whether a particular operation was successful or not.
Link | Tags |
---|---|
https://support.apple.com/en-us/121839 | vendor advisory |
https://support.apple.com/en-us/121842 | vendor advisory |
https://support.apple.com/en-us/121840 | vendor advisory |