Out-of-Bounds Access Vulnerability in Apple Operating Systems
CVE-2025-43205

4MEDIUM

Key Information:

Vendor

Apple

Vendor
CVE Published:
12 November 2025

What is CVE-2025-43205?

An out-of-bounds access issue exists in Apple's operating systems, which could allow an application to bypass Address Space Layout Randomization (ASLR). This flaw was addressed with enhanced bounds checking in the latest updates across various products including iOS, iPadOS, watchOS, tvOS, and visionOS. Users are encouraged to update their devices to the latest versions to mitigate potential security risks.

Affected Version(s)

iOS and iPadOS < 18.4

tvOS < 18.4

visionOS < 2.4

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.