#VU105834 Input validation error in macOS - CVE-2024-54525
Published: March 18, 2025 / Updated: March 25, 2025
macOS
Apple Inc.
Description
The vulnerability allows an attacker to compromise the affected system.
The vulnerability exists due to insufficient validation of user-supplied input in MobileBackup when restoring data from a backup file. An attacker can trick the victim into restoring data from a specially crafted backup and modify protected system files.