← Retour aux CVEs
CVE-2025-31217
MEDIUM6.5
Description
The issue was addressed with improved input validation. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Details CVE
Score CVSS v3.16.5
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurREQUIRED
Publie5/12/2025
Derniere modification4/2/2026
Sourcenvd
Observations honeypot0
Produits affectes
apple:ipadosapple:iphone_osapple:macosapple:safariapple:tvosapple:visionosapple:watchos
Faiblesses (CWE)
CWE-20
References
https://support.apple.com/en-us/122404(product-security@apple.com)
https://support.apple.com/en-us/122405(product-security@apple.com)
https://support.apple.com/en-us/122716(product-security@apple.com)
https://support.apple.com/en-us/122719(product-security@apple.com)
https://support.apple.com/en-us/122720(product-security@apple.com)
https://support.apple.com/en-us/122721(product-security@apple.com)
https://support.apple.com/en-us/122722(product-security@apple.com)
http://seclists.org/fulldisclosure/2025/May/10(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/May/12(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/May/13(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/May/5(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/May/6(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2025/May/7(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.