CNNVD-202509-4384 Information

CNNVD ID

CNNVD-202509-4384

CVE-2025-43400

  • CNNVD Published: 2025-09-29

Description (Chinese)

Apple iOS等都是美国苹果(Apple)公司的产品。Apple iOS是一套为移动设备所开发的操作系统。Apple iPadOS是一套用于iPad平板电脑的操作系统。Apple visionOS是一款适用于AR眼镜的操作系统。 Apple多款产品存在安全漏洞,该漏洞源于边界检查不足,可能导致处理特制字体时应用程序意外终止或进程内存损坏。以下产品及版本受到影响:macOS Sonoma 14.8.1版本、macOS Tahoe 26.0.1版本、macOS Sequoia 15.7.1版本、visionOS 26.0.1版本、iOS 26.0.1版本和iPadOS 26.0.1版本、iOS 18.7.1版本和iPadOS 18.7.1版本。

Description (English)

Apple iOS and others are American Apple products. Apple iOS is an operating system developed for mobile devices. Apple iPados is an operating system for iPad tablets. Apple VisionOS is an operating system for AR glasses. There is a security loophole in the Apple multi-products, which stems from inadequate border checks, which may lead to the accidental termination of the application or process memory damage when special fonts are processed. The following products and versions were affected: MacOS Sonoma 14.8.1, MacOS Tahoe 26.0.1, MacOS Sequoia 15.7.1, VisionOS 26.0.1, iOS 26.0.1 and iPadOS 26.0.1, iOS 18.7.1 and iPadOS 18.7.1.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-09-29

Last Modified

2026-02-24

References

https://support.apple.com/en-us/125326 https://support.apple.com/en-us/125330 https://support.apple.com/en-us/125639 http://seclists.org/fulldisclosure/2025/Sep/76 http://seclists.org/fulldisclosure/2025/Sep/78 https://support.apple.com/en-us/125327 https://support.apple.com/en-us/125338 https://support.apple.com/en-us/125328 https://support.apple.com/en-us/125329 https://support.apple.com/en-us/125637 http://seclists.org/fulldisclosure/2025/Sep/73

Patch

https://support.apple.com/en-us/125326

Share on: