CNNVD-202512-3198 Information

CNNVD ID

CNNVD-202512-3198

CVE-2025-46288

  • CNNVD Published: 2025-12-17

Description (Chinese)

Apple iOS等都是美国苹果(Apple)公司的产品。Apple iOS是一套为移动设备所开发的操作系统。Apple watchOS是一套智能手表操作系统。Apple macOS是一套专为Mac计算机所开发的专用操作系统。 Apple多款产品存在安全漏洞,该漏洞源于权限限制不足,可能导致应用程序访问敏感支付令牌。以下产品及版本受到影响:Apple visionOS 26.2之前版本、iOS 26.2之前版本和iPadOS 26.2之前版本、watchOS 26.2之前版本和macOS Tahoe 26.2之前版本。

Description (English)

Apple iOS and others are American Apple products. Apple iOS is an operating system developed for mobile devices. Apple WatchOS is a smart watch operating system. Apple MacOS is a dedicated operating system developed for Mac computers. There was a security gap in the Apple multi-products, which stemmed from inadequate privileges, which could result in applications accessing sensitive payment tokens. The following products and versions have been affected: Apple Vision OS 26.2, iOS 26.2 and iPadOS 26.2, watch OS 26.2 and MacOS Tahoe 26.2.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-12-17

Last Modified

2026-02-24

References

https://support.apple.com/en-us/125884 https://support.apple.com/en-us/125886 https://support.apple.com/en-us/125891 https://support.apple.com/en-us/125890 https://access.redhat.com/security/cve/cve-2025-46288

Patch

https://support.apple.com/en-us/125884

Share on: