PT-2025-37838 · Apple+8 · Ipados+15

Published

2025-01-01

·

Updated

2026-01-20

·

CVE-2025-43342

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Safari versions prior to 26 tvOS versions prior to 26 iOS versions prior to 18.7 iPadOS versions prior to 18.7 visionOS versions prior to 26 watchOS versions prior to 26 macOS Tahoe versions prior to 26
Description A correctness issue existed due to insufficient checks when processing maliciously crafted web content, potentially leading to an unexpected process crash.
Recommendations Update Safari to version 26. Update tvOS to version 26. Update iOS to version 18.7. Update iPadOS to version 18.7. Update visionOS to version 26. Update watchOS to version 26. Update macOS Tahoe to version 26.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

ALSA-2025:17802
ALSA-2025:18097
ALSA-2025:20922
BDU:2025-15542
CESA-2025_17802
CVE-2025-43342
DLA-4375-1
DSA-6042-1
INFSA-2025_17802
INFSA-2025_18097
INFSA-2025_20922
MGASA-2025-0313
OPENSUSE-SU-2026:20065-1
RHSA-2025_17802
RHSA-2025_18097
RHSA-2025_20922
SUSE-SU-2025:3700-1
SUSE-SU-2025:3701-1
SUSE-SU-2025:3905-1
SUSE-SU-2026:20102-1
USN-7817-1

Affected Products

Almalinux
Centos
Debian
Linuxmint
Apple Macos
Red Hat
Rocky Linux
Safari
Suse
Ubuntu
Ios
Ipados
Macos Tahoe
Tvos
Visionos
Watchos