Description
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Published: 2025-07-29
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service (unexpected crash)
Action: Patch
AI Analysis

Impact

A use‑after‑free flaw in WebKit’s memory management can be triggered by specially crafted web content, causing Safari to crash unexpectedly. The flaw arises after the library attempts to access freed memory, leading to a program termination that may allow local users to disrupt service but does not grant code execution or data exfiltration. The vulnerability is classified as CWE‑416 and rated with a CVSS score of 6.5, indicating a moderate severity.

Affected Systems

Apple Safari on macOS Sequoia 15.6, iOS 18.6, iPadOS 18.6 and 17.7.9, tvOS 18.6, visionOS 2.6, and watchOS 11.6, along with associated WebKit components on all these platforms. The issue is mitigated with the official updates released by Apple for these operating systems and browsers.

Risk and Exploitability

The risk is that an attacker can cause a denial of service by driving a target user to load maliciously crafted web pages. The EPSS score is less than 1%, suggesting exploitation is unlikely, and the vulnerability is not listed in CISA’s KEV catalog. The attack vector is inferred to be remote via the web; an attacker merely needs to entice a user to visit a malicious site, which is a conventional web‑based attack rather than a privileged or privileged code execution scenario.

Generated by OpenCVE AI on April 28, 2026 at 00:33 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Safari update (18.6 on macOS and iOS; 18.6 on iPadOS; 18.6 on tvOS; 2.6 on visionOS; and 11.6 on watchOS).
  • Install the corresponding operating system updates that include the WebKit fix (Sequoia 15.6, iOS 18.6, iPadOS 18.6/17.7.9, tvOS 18.6, visionOS 2.6, and watchOS 11.6).
  • If an update cannot be applied immediately, limit exposure by disabling Safari or restricting access to untrusted web content until the vendor releases the patch.

Generated by OpenCVE AI on April 28, 2026 at 00:33 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4276-1 webkit2gtk security update
Debian DSA Debian DSA DSA-5978-1 webkit2gtk security update
EUVD EUVD EUVD-2025-23109 A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, watchOS 11.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, tvOS 18.6, macOS Sequoia 15.6, visionOS 2.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Ubuntu USN Ubuntu USN USN-7702-1 WebKitGTK vulnerabilities
History

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, watchOS 11.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, tvOS 18.6, macOS Sequoia 15.6, visionOS 2.6. Processing maliciously crafted web content may lead to an unexpected Safari crash. A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.

Tue, 04 Nov 2025 22:30:00 +0000

Type Values Removed Values Added
References

Mon, 03 Nov 2025 20:30:00 +0000


Mon, 03 Nov 2025 19:30:00 +0000

Type Values Removed Values Added
References

Tue, 05 Aug 2025 00:15:00 +0000

Type Values Removed Values Added
Title webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash
References
Metrics threat_severity

None

threat_severity

Important


Thu, 31 Jul 2025 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple iphone Os
Apple safari
CPEs cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple iphone Os
Apple safari

Wed, 30 Jul 2025 23:00:00 +0000

Type Values Removed Values Added
Description A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 11.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, tvOS 18.6, macOS Sequoia 15.6, visionOS 2.6. Processing maliciously crafted web content may lead to an unexpected Safari crash. A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, watchOS 11.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, tvOS 18.6, macOS Sequoia 15.6, visionOS 2.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References

Wed, 30 Jul 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 30 Jul 2025 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-416
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}


Wed, 30 Jul 2025 11:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios
Apple ipados
Apple macos
Apple macos Sequoia
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios
Apple ipados
Apple macos
Apple macos Sequoia
Apple tvos
Apple visionos
Apple watchos

Tue, 29 Jul 2025 23:45:00 +0000

Type Values Removed Values Added
Description A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 11.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, tvOS 18.6, macOS Sequoia 15.6, visionOS 2.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-04-02T18:25:15.512Z

Reserved: 2025-04-16T15:24:37.089Z

Link: CVE-2025-43216

cve-icon Vulnrichment

Updated: 2025-11-04T21:10:32.005Z

cve-icon NVD

Status : Modified

Published: 2025-07-30T00:15:33.710

Modified: 2026-04-02T19:20:06.773

Link: CVE-2025-43216

cve-icon Redhat

Severity : Important

Publid Date: 2025-08-01T00:00:00Z

Links: CVE-2025-43216 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-04-28T00:45:17Z

Weaknesses