CVE-2025-43272

The issue was addressed with improved memory handling. This issue is fixed in visionOS 26, Safari 26, iOS 26 and iPadOS 26, watchOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-09-15 23:15

Updated : 2025-11-04 22:16


NVD link : CVE-2025-43272

Mitre link : CVE-2025-43272

CVE.ORG link : CVE-2025-43272


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
  • visionos
  • safari
  • macos
  • watchos
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer