Path Handling Issue in Xcode Affects Apple
CVE-2025-43370

4MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
15 September 2025

What is CVE-2025-43370?

A path handling vulnerability has been identified in Xcode, where improper validation of overly large path values could cause a process to crash. This issue has been addressed in Xcode version 26, which includes enhancements to ensure robust validation. Users are advised to update to this version to mitigate any potential risks associated with this vulnerability.

Affected Version(s)

Xcode < 26

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.