Integer Overflow Vulnerability in macOS Products by Apple
CVE-2025-43238

6.2MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
2 April 2026

What is CVE-2025-43238?

An integer overflow vulnerability in macOS products has been identified, which was resolved through enhanced input validation techniques. This flaw could potentially allow an application to trigger unexpected system terminations, posing a security risk. The vulnerability was effectively mitigated in the updates for macOS Sequoia 15.6, macOS Sonoma 14.7.7, and macOS Ventura 13.7.7, improving overall system stability and security against exploitation.

Affected Version(s)

macOS 0 < 13.7.7

macOS 0 < 14.7.7

macOS 0 < 15.6

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.