CNNVD-202507-3742 Information

CNNVD ID

CNNVD-202507-3742

CVE-2025-43265

  • CNNVD Published: 2025-07-30

Description (Chinese)

Apple Safari等都是美国苹果(Apple)公司的产品。Apple Safari是一款Web浏览器,是Mac OS X和iOS操作系统附带的默认浏览器。Apple iOS是一套为移动设备所开发的操作系统。Apple watchOS是一套智能手表操作系统。 Apple多款产品存在安全漏洞,该漏洞源于处理特制Web内容可能泄露应用程序内部状态。以下产品及版本受到影响:Safari 18.6之前版本、watchOS 11.6之前版本、visionOS 2.6之前版本、iOS 18.6之前版本、iPadOS 18.6之前版本、macOS Sequoia 15.6之前版本和tvOS 18.6之前版本。

Description (English)

Apple Safari and others are the products of Apple. Apple Safari is a Web browser, a default browser attached to Mac OS X and iOS operating systems. Apple iOS is an operating system developed for mobile devices. Apple WatchOS is a smart watch operating system. There is a safety gap in the Apple multi-products, which stems from the potential for the internal state of the application to be compromised by the handling of specially designed Web content. The following products and versions were affected: pre-Safari version 18.6, pre-watchOS 11.6, pre-vision OS 2.6, pre-iOS 18.6, pre-iPados 18.6, pre-macos Sequoia 15.6 and pre-tvOS 18.6.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-07-30

Last Modified

2026-02-24

References

https://support.apple.com/en-us/124155 https://support.apple.com/en-us/124154 https://support.apple.com/en-us/124153 https://support.apple.com/en-us/124149 https://support.apple.com/en-us/124147 https://support.apple.com/en-us/124152 https://vigilance.fr/vulnerability/WebKitGTK-out-of-bounds-memory-reading-dated-08-08-2025-47891 https://access.redhat.com/security/cve/cve-2025-43265

Patch

https://support.apple.com/en-us/124147

Share on: