← Zuruck zu CVEs
CVE-2025-43342
CRITICAL9.8
Beschreibung
A correctness issue was addressed with improved checks. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.
CVE Details
CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht9/15/2025
Zuletzt geandert4/2/2026
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
apple:ipadosapple:iphone_osapple:macosapple:safariapple:tvosapple:visionosapple:watchoswebkitgtk:webkitgtkwpewebkit:wpe_webkit
Schwachen (CWE)
CWE-20
Referenzen
https://support.apple.com/en-us/125108(product-security@apple.com)
https://support.apple.com/en-us/125109(product-security@apple.com)
https://support.apple.com/en-us/125110(product-security@apple.com)
https://support.apple.com/en-us/125113(product-security@apple.com)
https://support.apple.com/en-us/125114(product-security@apple.com)
https://support.apple.com/en-us/125115(product-security@apple.com)
https://support.apple.com/en-us/125116(product-security@apple.com)
http://seclists.org/fulldisclosure/2025/Sep/49(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/Sep/53(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/Sep/57(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/Sep/59(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2025/09/22/3(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.