Record summary

CVE-2025-43226 has a selected CVSS score of 4.0 (medium).

Description

An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, macOS Sonoma 14.7.7, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing a maliciously crafted image may result in disclosure of process memory.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 30, 2025 · Source: CVE List

Affected products and versions

6
ProductSourceVersion rangeStatus
CVE ListBefore 18.6affected
CVE ListBefore 17.7.9affected
CVE ListBefore 14.7.7affected
Before 15.6affected
CVE ListBefore 18.6affected
CVE ListBefore 2.6affected
CVE ListBefore 11.6affected

References

Showing 12 of 15