Out-of-Bounds Write Vulnerability in macOS by Apple
CVE-2025-43380

5.5MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
4 November 2025

What is CVE-2025-43380?

An out-of-bounds write vulnerability exists in Apple’s macOS, which could allow for unexpected application terminations. This issue arises during file parsing and has been resolved through enhanced input validation in the latest versions of macOS Sonoma and Sequoia.

Affected Version(s)

macOS < 14.8

macOS < 15.7

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-43380 : Out-of-Bounds Write Vulnerability in macOS by Apple