CVE-2025-43272
Overview
Advisory: Apple Security Advisory
Impact:
Description: Processing maliciously crafted web content may lead to an unexpected Safari crash
Researchers: Big Bear
| Attribute | Value |
|---|---|
| CVE | CVE-2025-43272 |
| Bugzilla | 294550 |
| Component | WebCore |
| Bug Class | LogicError |
| Severity | medium |
| Commit | fa85413077accf8c… |
| Advisory | Apple Advisory |
Root Cause Analysis
The issue was addressed with improved memory handling.
Files Changed
Source Files
Source/WebCore/Modules/url-pattern/URLPatternTokenizer.cpp
Test Files
LayoutTests/fast/url/urlpattern-invalid-pattern.html