CNNVD-202512-2293 Information

CNNVD ID

CNNVD-202512-2293

CVE-2025-43494

  • CNNVD Published: 2025-12-12

Description (Chinese)

Apple iOS等都是美国苹果(Apple)公司的产品。Apple iOS是一套为移动设备所开发的操作系统。Apple watchOS是一套智能手表操作系统。Apple iPadOS是一套用于iPad平板电脑的操作系统。 Apple多款产品存在安全漏洞,该漏洞源于邮件标头解析检查不足,可能导致攻击者引发持久拒绝服务。以下产品及版本受到影响:Apple watchOS 26.1之前版本、iOS 18.7.2之前版本和iPadOS 18.7.2之前版本、macOS Tahoe 26.1之前版本、visionOS 26.1之前版本、macOS Sonoma 14.8.2之前版本、macOS Sequoia 15.7.2之前版本、iOS 26.1之前版本和iPadOS 26.1之前版本。

Description (English)

Apple iOS and others are American Apple products. Apple iOS is an operating system developed for mobile devices. Apple WatchOS is a smart watch operating system. Apple iPados is an operating system for iPad tablets. There is a safety gap in the Apple’s multiple products, which stems from inadequate mailhead analysis checks, which could lead to a persistent denial of services by the attackers. The following products and versions were affected: Apple Watch OS 26.1, iOS 18.7.2 and iPados 18.7.2, macos Tahoe 26.1, vision OS 26.1, macos Sonoma 14.8.2, macos Sequoia 15.7.2, iOS 26.1 and iPados 26.1.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-12-12

Last Modified

2026-02-24

References

https://support.apple.com/en-us/125632 https://support.apple.com/en-us/125633 https://support.apple.com/en-us/125634 https://support.apple.com/en-us/125635 https://support.apple.com/en-us/125636 https://support.apple.com/en-us/125638 https://support.apple.com/en-us/125639

Patch

https://support.apple.com/en-us/125632

Share on: