CNNVD-202509-2288 Information

CNNVD ID

CNNVD-202509-2288

CVE-2025-43346

  • CNNVD Published: 2025-09-15

Description (Chinese)

Apple macOS等都是美国苹果(Apple)公司的产品。Apple macOS是一套专为Mac计算机所开发的专用操作系统。Apple iPadOS是一套用于iPad平板电脑的操作系统。Apple visionOS是一款适用于AR眼镜的操作系统。 Apple多款产品存在安全漏洞,该漏洞源于边界检查不足,可能导致处理特制媒体文件时应用程序意外终止或进程内存损坏。以下产品及版本受到影响:tvOS 26之前版本、watchOS 26之前版本、iOS 18.7之前版本、iPadOS 18.7之前版本、visionOS 26之前版本、macOS Tahoe 26之前版本、iOS 26之前版本和iPadOS 26之前版本。

Description (English)

Apple MacOS and others are all Apple products. Apple MacOS is a dedicated operating system developed for Mac computers. Apple iPados is an operating system for iPad tablets. Apple VisionOS is an operating system for AR glasses. There was a security gap in the Apple multi-products, which stemmed from inadequate border checks, which could lead to an accidental termination of the application or process memory damage when processing customized media files. The following products and versions were affected: pre-tvOS 26, pre-watchOS 26, pre-iOS 18.7, pre-iPadOS 18.7, pre-visionOS 26, pre-macOS Tahoe 26, pre-iOS 26 and pre-iPadOS 26.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-09-15

Last Modified

2026-02-24

References

https://support.apple.com/en-us/125114 https://support.apple.com/en-us/125115 https://support.apple.com/en-us/125116 https://support.apple.com/en-us/125110 http://seclists.org/fulldisclosure/2025/Sep/57 http://seclists.org/fulldisclosure/2025/Sep/58 http://seclists.org/fulldisclosure/2025/Sep/49 http://seclists.org/fulldisclosure/2025/Sep/53 http://seclists.org/fulldisclosure/2025/Sep/56 https://support.apple.com/en-us/125108 https://support.apple.com/en-us/125109 https://access.redhat.com/security/cve/cve-2025-43346

Patch

https://support.apple.com/en-us/125108

Share on: