CNNVD-202511-343 Information

CNNVD ID

CNNVD-202511-343

CVE-2025-43376

  • CNNVD Published: 2025-11-04

Description (Chinese)

Apple Safari等都是美国苹果(Apple)公司的产品。Apple Safari是一款Web浏览器,是Mac OS X和iOS操作系统附带的默认浏览器。Apple tvOS是一套智能电视操作系统。Apple watchOS是一套智能手表操作系统。 Apple多款产品存在安全漏洞,该漏洞源于状态管理不当,可能导致远程攻击者查看泄露的DNS查询。以下产品及版本受到影响:Safari 26之前版本、tvOS 26之前版本、watchOS 26之前版本、iOS 26之前版本、iPadOS 26之前版本和visionOS 26之前版本。

Description (English)

Apple Safari and others are the products of Apple. Apple Safari is a Web browser, a default browser attached to Mac OS X and iOS operating systems. Apple tvOS is a smart television operating system. Apple WatchOS is a smart watch operating system. There is a safety loophole in Apple’s multiple products, which stems from inadequate state management, which may lead to remote assailants looking for leaked DNS queries. The following products and versions were affected: pre-Saafari 26, pre-tvOS 26, pre-watch OS 26, pre-iOS 26, pre-iPados 26 and pre-vision OS 26.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-11-04

Last Modified

2026-02-24

References

https://support.apple.com/en-us/125108 https://support.apple.com/en-us/125113 https://support.apple.com/en-us/125114 https://support.apple.com/en-us/125115 https://support.apple.com/en-us/125116

Patch

https://support.apple.com/en-us/125108

Share on: