V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2025-43419
AST
High

The issue was addressed with improved memory handling. This issue is fixed in Safari 26, tvOS 26, watchOS 26, iOS 26 and iPadOS 26, visionO…

CVSS
8.8
High
EPSS
0.00
p23
Published
2025-01-01
Updated
2025-01-01
Description

The issue was addressed with improved memory handling. This issue is fixed in Safari 26, tvOS 26, watchOS 26, iOS 26 and iPadOS 26, visionOS 26. Processing maliciously crafted web content may lead to memory corruption.

Tags · CWE
RCEPre-auth
CWE-119
CAPEC-8
CAPEC-9
CAPEC-10
CAPEC-14
CAPEC-24
CAPEC-42
CAPEC-44
CAPEC-45
CAPEC-46
CAPEC-47
CAPEC-100
CAPEC-123
Affected products
Safari < 26.0Ipados < 26.0Iphone_os < 26.0Tvos < 26.0Visionos < 26.0Watchos < 26.0
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Timeline
2025-01-01
Published
2025-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: R
Required (R)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.003 · p23
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
qtwebkit-opensource-srcTracked
qtwebkit-opensource-srcTracked
webkit2gtkTracked
webkit2gtkTracked
webkit2gtkTracked
webkit2gtkTracked
webkit2gtkTracked
webkit2gtkTracked
webkit2gtkTracked
wpewebkitTracked
wpewebkitTracked
wpewebkitTracked
wpewebkitTracked
wpewebkitTracked
ipados*Tracked
iphone_os*Tracked
safari*Tracked
tvos*Tracked
visionos*Tracked
watchos*Tracked