Skip to content
COOEY

EXPOSURES › CVE-2025-43300

CVE-2025-43300

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-08-21 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2025-43300 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 exploited-in-wildunpatched

Apple iOS, iPadOS, and macOS had an unpatched out-of-bounds write vulnerability exploited in the wild.

Apple's iOS, iPadOS, and macOS operating systems were found to have a critical out-of-bounds write vulnerability in the Image I/O framework that was actively exploited in the wild. This exposed users to potential remote code execution without patches available.

Shame score — Critical flaw actively exploited with no patches available, leading to potential remote code execution.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Apple iOS, iPadOS, and macOS contain an out-of-bounds write vulnerability in the Image I/O framework.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.