CVE-2025-43532

A memory corruption issue was addressed with improved bounds checking. This issue is fixed in watchOS 26.2, macOS Sonoma 14.8.3, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, macOS Sequoia 15.7.3, visionOS 26.2, tvOS 26.2. Processing malicious data may lead to unexpected app termination.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

17 Dec 2025, 21:16

Type Values Removed Values Added
References
  • () https://support.apple.com/en-us/125884 -
  • () https://support.apple.com/en-us/125885 -
  • () https://support.apple.com/en-us/125886 -
  • () https://support.apple.com/en-us/125889 -
  • () https://support.apple.com/en-us/125890 -
  • () https://support.apple.com/en-us/125891 -
Summary (en) A memory corruption issue was addressed with improved bounds checking. This issue is fixed in macOS Sonoma 14.8.3, macOS Sequoia 15.7.3. Processing malicious data may lead to unexpected app termination. (en) A memory corruption issue was addressed with improved bounds checking. This issue is fixed in watchOS 26.2, macOS Sonoma 14.8.3, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, macOS Sequoia 15.7.3, visionOS 26.2, tvOS 26.2. Processing malicious data may lead to unexpected app termination.

15 Dec 2025, 21:52

Type Values Removed Values Added
References () https://support.apple.com/en-us/125887 - () https://support.apple.com/en-us/125887 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125888 - () https://support.apple.com/en-us/125888 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
First Time Apple macos
Apple

15 Dec 2025, 01:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.8
CWE CWE-120

12 Dec 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-12 21:15

Updated : 2025-12-17 21:16


NVD link : CVE-2025-43532

Mitre link : CVE-2025-43532

CVE.ORG link : CVE-2025-43532


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')