HIGH

CVE-2025-43510

Apple Ipados 2025-12-12 CVSS v3.1
CVSS
7.8
KEV

Description

A memory corruption issue was addressed with improved lock state checking. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. A malicious application may cause unexpected changes in memory shared between processes.

Summary dbcve.org

Memory corruption vulnerability in Apple platform shared memory handling where insufficient lock state checking allowed a malicious application to corrupt memory shared between processes, potentially enabling privilege escalation or unexpected behavior in target processes.

Mitigation

Apply vendor-supplied patches for the affected OS versions (iOS 18.7.2/26.1, iPadOS 18.7.2/26.1, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1) to all managed devices.

Weakness (CWE)

CWE-667 Improper Locking

EPSS Score

0.36%
Probability of exploitation in next 30 days
29.3th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE