CVE-2025-43374: Race Condition
afpfs. The issue was addressed with improved memory handling.
Other sources
afpfs. This issue was addressed with improved checks.
— Apple
AirDrop. A permissions issue was addressed with additional restrictions.
— Apple
AirPlay. A type confusion issue was addressed with improved checks.
— Apple
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.3, macOS Ventura 13.7.3, tvOS 18.5, visionOS 2.5, watchOS 11.5. An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory.
— MITRE
Apple Intelligence Reports. A permissions issue was addressed with additional restrictions.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2025-24109
- CVE-2025-24100
- CVE-2025-24114
- CVE-2025-24121
- CVE-2025-24122
- CVE-2025-24127
- CVE-2025-24106
- CVE-2024-44172
- CVE-2025-24123
- CVE-2025-24124
- CVE-2025-24102
- CVE-2025-24174
- CVE-2025-24086
- CVE-2025-24094
- CVE-2025-24115
- CVE-2025-24116
- CVE-2024-55549
- CVE-2025-24855
- CVE-2025-24136
- CVE-2025-24099
- CVE-2025-24130
- CVE-2025-24183
- CVE-2025-24146
- CVE-2024-54497
- CVE-2025-24093
- CVE-2025-24149
- CVE-2025-24103
- CVE-2025-24185
- CVE-2025-24139
- CVE-2025-24151
- CVE-2025-24138
- CVE-2025-24176
- CVE-2025-31242
- CVE-2025-31248
- CVE-2025-24154
- CVE-2025-43374
- CVE-2025-24120
- CVE-2025-24156
- CVE-2025-24137
- CVE-2025-24112
- CVE-2024-54509
- CVE-2025-24161
- CVE-2025-24160
- CVE-2025-24163
- CVE-2025-24118
- CVE-2025-24159
- CVE-2024-44243
- CVE-2025-24092
- CVE-2025-31251
- CVE-2025-31212
- CVE-2025-31200
- CVE-2025-31208
- CVE-2025-31209
- CVE-2025-31239
- CVE-2025-31233
- CVE-2025-31226
- CVE-2025-24224
- CVE-2025-31219
- CVE-2025-31241
- CVE-2024-8176
- CVE-2025-31222
- CVE-2025-31221
- CVE-2025-24213
- CVE-2025-31223
- CVE-2025-31238
- CVE-2025-24223
- CVE-2025-31204
- CVE-2025-31217
- CVE-2025-31215
- CVE-2025-31206
- CVE-2025-31205
- CVE-2025-31257
- CVE-2025-24097
- CVE-2025-31235
- CVE-2025-31196
- CVE-2025-24111
- CVE-2025-31210
- CVE-2025-30448
- CVE-2025-24144
- CVE-2025-24225
- CVE-2025-31228
- CVE-2025-24259
- CVE-2025-31245
- CVE-2025-31213
- CVE-2025-31220
- CVE-2025-31216
- CVE-2025-31214
- CVE-2025-31225
- CVE-2025-31253
- CVE-2025-31207
- CVE-2025-31227
- CVE-2025-31234
- CVE-2025-31246
- CVE-2025-31240
- CVE-2025-31237
- CVE-2025-31260
- CVE-2025-24222
- CVE-2025-31236
- CVE-2025-30443
- CVE-2025-31232
- CVE-2025-30440
- CVE-2025-24274
- CVE-2025-31218
- CVE-2025-31256
- CVE-2025-24142
- CVE-2025-26465
- CVE-2025-26466
- CVE-2025-31244
- CVE-2025-31258
- CVE-2025-31266
- CVE-2025-31249
- CVE-2025-31224
- CVE-2025-31247
- CVE-2025-31259
- CVE-2025-31250
Frequently Asked Questions
What is the severity of CVE-2025-43374?
CVE-2025-43374 is classified as a potentially high severity vulnerability due to its nature of allowing out-of-bounds memory access.
How do I fix CVE-2025-43374?
To fix CVE-2025-43374, users should update their devices to the latest versions of iPadOS 17.7.7, iOS 18.5, visionOS 2.5, macOS Sonoma 14.7.3, macOS Ventura 13.7.3, macOS Sequoia 15.5, or watchOS 11.5.
What devices are affected by CVE-2025-43374?
CVE-2025-43374 affects devices running iPadOS, iOS, visionOS, macOS Sonoma, macOS Ventura, macOS Sequoia, and watchOS that are below the specified versions.
What type of vulnerability is CVE-2025-43374?
CVE-2025-43374 is categorized as an out-of-bounds read vulnerability, which may allow attackers to access unintended memory.
Is physical proximity required for exploiting CVE-2025-43374?
Yes, an attacker would need to be in physical proximity to exploit CVE-2025-43374.