PT-2025-44825 · Apple · Visionos+6

Published

2025-09-15

·

Updated

2026-03-26

·

CVE-2025-43376

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Safari versions prior to 26 tvOS versions prior to 26 watchOS versions prior to 26 iOS versions prior to 26 iPadOS versions prior to 26 visionOS versions prior to 26
Description A logic issue exists due to improved state management. A remote attacker may be able to view leaked DNS queries when Private Relay is enabled.
Recommendations Update Safari to version 26. Update tvOS to version 26. Update watchOS to version 26. Update iOS to version 26. Update iPadOS to version 26. Update visionOS to version 26.

Fix

Related Identifiers

CVE-2025-43376

Affected Products

Apple Macos
Safari
Ios
Ipados
Tvos
Visionos
Watchos