5.5

CVE-2025-43520

Warnung
Medienbericht
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. A malicious application may be able to cause unexpected system termination or write kernel memory.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleiPadOS Version < 18.7.2
AppleiPadOS Version26.0
AppleiPhone OS Version < 18.7.2
AppleiPhone OS Version26.0
ApplemacOS Version >= 14.0 < 14.8.2
ApplemacOS Version >= 15.0 < 15.7.2
ApplemacOS Version26.0
AppletvOS Version < 26.1
ApplevisionOS Version < 26.1
ApplewatchOS Version < 26.1
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login

20.03.2026: CISA Known Exploited Vulnerabilities (KEV) Catalog

Apple Multiple Products Classic Buffer Overflow Vulnerability

Schwachstelle

Apple watchOS, iOS, iPadOS, macOS, visionOS, tvOS, and iPadOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory.

Beschreibung

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.27% 0.499
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.

https://support.apple.com/en-us/125636
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125635
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125632
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125637
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125638
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125639
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125633
Vendor Advisory
Release Notes
https://support.apple.com/en-us/125634
Vendor Advisory
Release Notes