CVE-2025-31234

HIGH

iPadOS < 18.5 - Memory Corruption via Input Sanitization Issue

Title source: llm
STIX 2.1

Description

The issue was addressed with improved input sanitization. This issue is fixed in iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5. An attacker may be able to cause unexpected system termination or corrupt kernel memory.

References (8)

Core 8

Scores

CVSS v3 8.2
EPSS 0.0052
EPSS Percentile 67.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-119
Status published
Products (9)
Apple/iOS and iPadOS < 18.5
apple/ipados < 18.5
apple/iphone_os < 18.5
apple/macos < 15.5
Apple/macOS < 15.5
apple/tvos < 18.5
Apple/tvOS < 18.5
apple/visionos < 2.5
Apple/visionOS < 2.5
Published May 12, 2025
Tracked Since Feb 18, 2026