3.3
CVE-2025-43308 - macOS Entitlement Check Bypass Allowing Sensitive Data Access
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access sensitive user data.
3.3
CVE-2025-43328 - App May Access Sensitive User Data Due to Permission Issue on macOS
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data.
3.3
CVE-2025-43294 - Improper Access Control Enables Sensitive Data Exposure via Environment Variables on Apple OS
An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26, tvOS 26.1, watchOS 26.1. An app may be able to access sensitive user data.
5.5
CVE-2025-43369 - Access to Protected User Data via Symlink Handling Bug
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26. An app may be able to access protected user data.
5.5
CVE-2025-43312 - Buffer Overflow Causing Unexpected System Termination in macOS
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to cause unexpected system termination.
5.5
CVE-2025-43353 - Heap Corruption via Malicious String Processing in macOS
The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. Processing a maliciously crafted string may lead to heap corruption.
7
CVE-2025-43304 - Root Privilege Escalation via Race Condition in macOS State Handling
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to gain root privileges.
5.5
CVE-2025-43305 - Malicious App Privacy Leak via Logic Issue in macOS
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A malicious app may be able to access private information.
3.3
CVE-2025-43344 - OutβofβBounds Access Leading to System Termination in Apple Operating Systems
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to cause unexpected system termination.
5.5
CVE-2025-43190 - Path Traversal Vulnerability Exposes Sensitive User Data on Apple Devices
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, visionOS 26, watchOS 26. An app may be able to access sensitive user data.