PT-2025-31300 · Apple+9 · Visionos+15

Ignacio Sanmillan

+1

·

Published

2025-07-29

·

Updated

2025-11-25

·

CVE-2025-43216

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Safari (affected versions not specified) watchOS versions prior to 11.6 iOS versions prior to 18.6 iPadOS versions prior to 18.6 iPadOS version 17.7.9 tvOS versions prior to 18.6 macOS versions prior to Sequoia 15.6 visionOS versions prior to 2.6
Description A use-after-free issue exists due to improved memory management. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Recommendations Update watchOS to version 11.6 or later. Update iOS to version 18.6 or later. Update iPadOS to version 18.6 or later. Update iPadOS to version 17.7.9. Update tvOS to version 18.6 or later. Update macOS to version Sequoia 15.6 or later. Update visionOS to version 2.6 or later.

Fix

Use After Free

Weakness Enumeration

Related Identifiers

ALSA-2025:13780
ALSA-2025:13782
BDU:2025-09438
CESA-2025_13780
CVE-2025-43216
DLA-4276-1
DSA-5978-1
INFSA-2025_13780
INFSA-2025_13782
MGASA-2025-0313
RHSA-2025:13780
RHSA-2025:13782
RHSA-2025:14421
RHSA-2025:14422
RHSA-2025:14423
RHSA-2025:14432
RHSA-2025:14433
RHSA-2025:14434
RHSA-2025:14486
RHSA-2025_13780
RHSA-2025_13782
SUSE-SU-2025:02765-1
SUSE-SU-2025:02766-1
SUSE-SU-2025:02777-1
SUSE-SU-2025:02973-1
SUSE-SU-2025_02765-1
SUSE-SU-2025_02766-1
SUSE-SU-2025_02777-1
SUSE-SU-2025_02973-1
USN-7702-1

Affected Products

Almalinux
Astra Linux
Centos
Debian
Linuxmint
Apple Macos
Red Hat
Rocky Linux
Safari
Suse
Ubuntu
Ios
Ipados
Tvos
Visionos
Watchos