CVE-2025-24223

Overview

Advisory: Apple Security Advisory

Impact:

Description: Processing maliciously crafted web content may lead to memory corruption

Researchers: rheza (@ginggilBesel), Edouard Bochin (@le_douds) and Tao Yan (@Ga1ois) of Palo Alto Networks

Attribute Value
CVE CVE-2025-24223
Bugzilla 287577
Component WebKit
Bug Class LogicError
Severity medium
Advisory Apple Advisory

Fix not public. The WebKit fix for this bug is embargoed or not yet disclosed. The bug ID is confirmed from the Apple advisory, but no public commit references it.

Root Cause Analysis

The issue was addressed with improved memory handling.