This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. Running an hdiutil command may unexpectedly execute arbitrary code.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/124149 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/124150 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/124151 | Release Notes Vendor Advisory |
| http://seclists.org/fulldisclosure/2025/Jul/32 | |
| http://seclists.org/fulldisclosure/2025/Jul/33 | |
| http://seclists.org/fulldisclosure/2025/Jul/34 |
Configurations
Configuration 1 (hide)
|
History
02 Apr 2026, 19:20
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. Running an hdiutil command may unexpectedly execute arbitrary code. |
03 Nov 2025, 20:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Sep 2025, 12:47
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.apple.com/en-us/124149 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/124150 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/124151 - Release Notes, Vendor Advisory | |
| First Time |
Apple
Apple macos |
|
| CWE | NVD-CWE-noinfo | |
| CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
29 Aug 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
29 Aug 2025, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-08-29 01:15
Updated : 2026-04-02 19:20
NVD link : CVE-2025-43187
Mitre link : CVE-2025-43187
CVE.ORG link : CVE-2025-43187
JSON object : View
Products Affected
apple
- macos
CWE
