A buffer overflow was addressed with improved bounds checking. This issue is fixed in Safari 26.1, visionOS 26.1, watchOS 26.1, iOS 26.1 and iPadOS 26.1, tvOS 26.1. Processing maliciously crafted web content may lead to an unexpected process crash.
https://thehackernews.com/2025/11/googles-ai-big-sleep-finds-5-new.html
https://securityaffairs.com/184184/security/google-big-sleep-found-five-vulnerabilities-in-safari.html
https://support.apple.com/en-us/125640
https://support.apple.com/en-us/125639
https://support.apple.com/en-us/125638
https://support.apple.com/en-us/125637
https://support.apple.com/en-us/125632
Source: Mitre, NVD
Published: 2025-11-04
Updated: 2025-11-04
Base Score: 5
Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P
Severity: Medium
Base Score: 4.3
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
EPSS: 0.00018