CVE-2025-43368

Overview

Advisory: Apple Security Advisory

Impact:

Description: Processing maliciously crafted web content may lead to an unexpected Safari crash

Researchers: Pawel Wylecial of REDTEAM.PL working with Trend Micro Zero Day Initiative, Ignacio Sanmillan (@ulexec)

Attribute Value
CVE CVE-2025-43368
Bugzilla 296276
Component WebKit
Bug Class UAF
Severity medium
Commit 674611789255a98f…
Advisory Apple Advisory

Root Cause Analysis

A use-after-free issue was addressed with improved memory management.

Files Changed

Source Files

  • Source/WebKit/Platform/IPC/Connection.cpp
  • Source/WebKit/Platform/IPC/Connection.h