CVE-2025-43429
Overview
Advisory: Apple Security Advisory
Impact:
Description: Processing maliciously crafted web content may lead to an unexpected process crash
Researchers: Google Big Sleep
| Attribute | Value |
|---|---|
| CVE | CVE-2025-43429 |
| Bugzilla | 298232 |
| Component | JSC |
| Bug Class | IntegerOverflow |
| Severity | medium |
| Commit | 7a45348e0e20683e… |
| Advisory | Apple Advisory |
Root Cause Analysis
A buffer overflow was addressed with improved bounds checking.
Files Changed
Source Files
Source/JavaScriptCore/runtime/StringPrototype.cppSource/WTF/wtf/unicode/icu/ICUHelpers.h