Apple CFNetwork Denial-of-Service Vulnerability Allowing Modification of Restricted Network Settings

Vulnerability

A denial-of-service vulnerability in the CFNetwork component of various Apple operating systems, including macOS Ventura, iPadOS 17.7.9, macOS Sonoma, tvOS 18.6, and visionOS 2.6, allows a non-privileged user to modify restricted network settings. The issue arises from inadequate input validation, which has been improved in the latest updates.

Impact

Exploitation of this vulnerability could lead to unauthorized changes in network settings, potentially disrupting network-related functionalities or configurations.

Remediation

Users can update to the latest versions of macOS Ventura, iPadOS 17.7.9, macOS Sonoma, tvOS 18.6, or visionOS 2.6 to address this vulnerability.

Added: Jul 30, 2025, 1:41 AM
Updated: Jul 30, 2025, 1:41 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.