A race condition was addressed with improved state handling. This issue is fixed in macOS Sonoma 14.8, macOS Sequoia 15.7. An app may be able to gain root privileges.
https://thehackernews.com/2025/09/apple-backports-fix-for-cve-2025-43300.html
https://cyberscoop.com/apple-security-updates-september-2025/
https://support.apple.com/en-us/125112
https://support.apple.com/en-us/125111
http://seclists.org/fulldisclosure/2025/Sep/55
http://seclists.org/fulldisclosure/2025/Sep/54
http://seclists.org/fulldisclosure/2025/Sep/53
Source: Mitre, NVD
Published: 2025-09-15
Updated: 2025-11-04
Base Score: 6
Vector: CVSS2#AV:L/AC:H/Au:S/C:C/I:C/A:C
Severity: Medium
Base Score: 7
Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.00017