PT-2025-31309 · Apple+9 · Visionos+15

Gilad Moav

·

Published

2025-07-29

·

Updated

2025-11-25

·

CVE-2025-43227

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions iOS versions prior to 18.6 iPadOS versions prior to 18.6 macOS Sequoia versions prior to 15.6 tvOS versions prior to 18.6 watchOS versions prior to 11.6 visionOS versions prior to 2.6
Description The issue was addressed through improved state management. Processing maliciously crafted web content may disclose sensitive user information.
Recommendations Update to iOS version 18.6 or later. Update to iPadOS version 18.6 or later. Update to macOS Sequoia version 15.6 or later. Update to tvOS version 18.6 or later. Update to watchOS version 11.6 or later. Update to visionOS version 2.6 or later.

Fix

Weakness Enumeration

Related Identifiers

ALSA-2025:13780
ALSA-2025:13782
BDU:2025-09508
CESA-2025_13780
CVE-2025-43227
DLA-4276-1
DSA-5978-1
INFSA-2025_13780
INFSA-2025_13782
MGASA-2025-0313
RHSA-2025:13780
RHSA-2025:13782
RHSA-2025:14421
RHSA-2025:14422
RHSA-2025:14423
RHSA-2025:14432
RHSA-2025:14433
RHSA-2025:14434
RHSA-2025:14486
RHSA-2025_13780
RHSA-2025_13782
SUSE-SU-2025:02765-1
SUSE-SU-2025:02766-1
SUSE-SU-2025:02777-1
SUSE-SU-2025:02973-1
SUSE-SU-2025_02765-1
SUSE-SU-2025_02766-1
SUSE-SU-2025_02777-1
SUSE-SU-2025_02973-1
USN-7702-1

Affected Products

Almalinux
Astra Linux
Centos
Debian
Linuxmint
Apple Macos
Red Hat
Rocky Linux
Suse
Ubuntu
Ios
Ipados
Macos Sequoia
Tvos
Visionos
Watchos