CNNVD-202512-3198 Information
CNNVD ID
CNNVD-202512-3198
Related CVE
- CNNVD Published: 2025-12-17
Description (Chinese)
Apple iOS等都是美国苹果(Apple)公司的产品。Apple iOS是一套为移动设备所开发的操作系统。Apple watchOS是一套智能手表操作系统。Apple macOS是一套专为Mac计算机所开发的专用操作系统。 Apple多款产品存在安全漏洞,该漏洞源于权限限制不足,可能导致应用程序访问敏感支付令牌。以下产品及版本受到影响:Apple visionOS 26.2之前版本、iOS 26.2之前版本和iPadOS 26.2之前版本、watchOS 26.2之前版本和macOS Tahoe 26.2之前版本。
Description (English)
Apple iOS and others are American Apple products. Apple iOS is an operating system developed for mobile devices. Apple WatchOS is a smart watch operating system. Apple MacOS is a dedicated operating system developed for Mac computers. There was a security gap in the Apple multi-products, which stemmed from inadequate privileges, which could result in applications accessing sensitive payment tokens. The following products and versions have been affected: Apple Vision OS 26.2, iOS 26.2 and iPadOS 26.2, watch OS 26.2 and MacOS Tahoe 26.2.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
苹果
Published
2025-12-17
Last Modified
2026-02-24
References
https://support.apple.com/en-us/125884 https://support.apple.com/en-us/125886 https://support.apple.com/en-us/125891 https://support.apple.com/en-us/125890 https://access.redhat.com/security/cve/cve-2025-46288
Patch
https://support.apple.com/en-us/125884
Share on: