← Volver a CVEs
CVE-2025-43203
MEDIUM4.0
Descripcion
The issue was addressed with improved handling of caches. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26. An attacker with physical access to an unlocked device may be able to view an image in the most recently viewed locked note.
Detalles CVE
Puntuacion CVSS v3.14.0
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado9/15/2025
Ultima modificacion4/2/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
apple:ipadosapple:iphone_os
Debilidades (CWE)
CWE-922
Referencias
https://support.apple.com/en-us/125108(product-security@apple.com)
https://support.apple.com/en-us/125109(product-security@apple.com)
http://seclists.org/fulldisclosure/2025/Sep/49(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/Sep/50(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.