CVE-2025-43419

high

Description

The issue was addressed with improved memory handling. This issue is fixed in Safari 26, tvOS 26, watchOS 26, iOS 26 and iPadOS 26, visionOS 26. Processing maliciously crafted web content may lead to memory corruption.

References

https://support.apple.com/en-us/125116

https://support.apple.com/en-us/125115

https://support.apple.com/en-us/125114

https://support.apple.com/en-us/125113

https://support.apple.com/en-us/125108

Details

Source: Mitre, NVD

Published: 2025-11-04

Updated: 2025-11-05

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00018