---
cve: "CVE-2024-44257"
severity: "MEDIUM"
cvss: 6.2
epss: "24%"
vendor: "Apple"
kev: false
exploited: false
published: "2024-10-28 22:15:03"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-14T19:01:11+02:00"
---

# CVE-2024-44257

> 6.2 MEDIUM

## Beschreibung

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. An app may be able to access sensitive user data.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Keine | good |
| A Verfügbarkeit | Keine | good |

## Referenzen

- <https://support.apple.com/en-us/121564>
- <https://support.apple.com/en-us/121568>
- <https://support.apple.com/en-us/121570>
- <http://seclists.org/fulldisclosure/2024/Oct/11>
- <http://seclists.org/fulldisclosure/2024/Oct/12>
- <http://seclists.org/fulldisclosure/2024/Oct/13>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-44257) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
