An out-of-bounds read was addressed with improved input validation. This issue is fixed in visionOS 26.1, macOS Sonoma 14.8.2, macOS Sequoia 15.7.2, watchOS 26.1, iOS 26.1 and iPadOS 26.1, tvOS 26.1. Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/125632 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125635 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125636 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125637 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125638 | Vendor Advisory Release Notes |
| https://support.apple.com/en-us/125639 | Vendor Advisory Release Notes |
Configurations
Configuration 1 (hide)
|
History
04 Nov 2025, 17:50
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
|
| First Time |
Apple watchos
Apple Apple tvos Apple ipados Apple macos Apple visionos Apple iphone Os |
|
| References | () https://support.apple.com/en-us/125632 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125635 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125636 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125637 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125638 - Vendor Advisory, Release Notes | |
| References | () https://support.apple.com/en-us/125639 - Vendor Advisory, Release Notes |
04 Nov 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-125 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
04 Nov 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 02:15
Updated : 2025-11-04 17:50
NVD link : CVE-2025-43445
Mitre link : CVE-2025-43445
CVE.ORG link : CVE-2025-43445
JSON object : View
Products Affected
apple
- watchos
- visionos
- iphone_os
- tvos
- macos
- ipados
CWE
CWE-125
Out-of-bounds Read
