CVE-2025-43370: Medium severity Apple Xcode vulnerability
A path handling issue was addressed with improved validation. This issue is fixed in Xcode 26. Processing an overly large path value may crash a process.
Other sources
Dev Tools. A path handling issue was addressed with improved validation.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-43370?
CVE-2025-43370 has a high severity level due to its potential to crash processes by exploiting path handling issues.
How do I fix CVE-2025-43370?
To fix CVE-2025-43370, you should update to Xcode version 26 or later where the vulnerability has been addressed.
What causes CVE-2025-43370?
CVE-2025-43370 is caused by improper validation of overly large path values which may lead to crashes.
Which versions of Xcode are affected by CVE-2025-43370?
CVE-2025-43370 affects all Xcode versions prior to 26.
Is CVE-2025-43370 specific to certain operating systems?
CVE-2025-43370 is specific to the macOS operating system as it pertains to the Apple Xcode software.