A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 26.1, iOS 26.1 and iPadOS 26.1, Safari 26.1, visionOS 26.1. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/125632 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125638 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125639 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125640 | Vendor Advisory Release Notes |
Configurations
Configuration 1 (hide)
|
History
04 Nov 2025, 17:50
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apple watchos
Apple iphone Os Apple safari Apple visionos Apple ipados Apple |
|
| References | () https://support.apple.com/en-us/125632 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125638 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125639 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125640 - Vendor Advisory, Release Notes | |
| CPE | cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
04 Nov 2025, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
| CWE | CWE-416 |
04 Nov 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 02:15
Updated : 2025-11-04 17:50
NVD link : CVE-2025-43457
Mitre link : CVE-2025-43457
CVE.ORG link : CVE-2025-43457
JSON object : View
Products Affected
apple
- watchos
- safari
- iphone_os
- visionos
- ipados
CWE
CWE-416
Use After Free
