5.5
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Description
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26.1. A malicious app may be able to delete protected user data.
Basic Information
ID
CVE-2025-43381
Source
apple
Published
Dec 12, 2025 at 20:56
Modified
Dec 15, 2025 at 13:40
Affected Product
Vendor
Apple
Product
macOS
Version
unspecified
Affected Versions
Apple macOS unspecified