Memory Handling Vulnerability in Safari and Apple Operating Systems
CVE-2025-43425

4.3MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
4 November 2025

What is CVE-2025-43425?

A memory handling vulnerability was identified in Safari and several Apple operating systems. When processing maliciously crafted web content, this issue could trigger an unexpected process crash, potentially impacting user experience and productivity. Apple has addressed the problem by implementing improved memory management in the latest versions of Safari and its operating systems, enhancing overall security for users.

Affected Version(s)

iOS and iPadOS < 26.1

Safari < 26.1

tvOS < 26.1

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-43425 : Memory Handling Vulnerability in Safari and Apple Operating Systems