Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2732 articles · 104798 vulns · 36/41 feeds (7d)
← Back to list
8.8
CVE-2025-43202EXPLOITEDPATCHED
apple · ipados

CVE-2025-43202: This issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 1

Description

This issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6. Processing a file may lead to memory corruption.

Affected Products

VendorProductVersions
appleipados0, 0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
appleiphone_oscve_cpe95%
applemacoscve_cpe95%
appleipadoscert_advisory90%
appleioscert_advisory90%

References

  • https://support.apple.com/en-us/124147
  • https://support.apple.com/en-us/124149

Related News (4 articles)

Tier B
BSI Advisories5h ago
[UPDATE] [hoch] Apple iOS und iPadOS: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB4d ago
CVE-2025-43202 | Apple macOS File memory corruption
→ No new info (linked only)
Tier C
VulDB4d ago
CVE-2025-43202 | Apple iOS/iPadOS File memory corruption
→ No new info (linked only)
Tier C
Schneier on Security5d ago
Possible US Government iPhone Hacking Tool Leaked
→ No new info (linked only)
CVSS 3.18.8 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
18.6
PublishedApr 2, 2026
Last enriched4d agov3
Tags
iosstate-sponsoredzero-click exploitUS governmenthacking tools
Trending Score66
Source articles4
Independent3
Info Completeness6/14
Missing: versions, cvss, epss, cwe, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2025-43210EXP
CVE-2025-43210: An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.6 and iPadOS 18
Trending: 59
HIGHCVE-2026-20700EXPKEV
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memo
Trending: 47
CRITICALCVE-2024-44219EXP
CVE-2024-44219: A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.1. A malicious a
Trending: 29
HIGHCVE-2024-40849EXP
CVE-2024-40849: A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.1. An app may be able
Trending: 28
HIGHCVE-2024-44286EXP
CVE-2024-44286: This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with
Trending: 28

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Apr 2, 2026
Discovered by ZDM
Apr 2, 2026
Updated: vendor, product, patchAvailable
Apr 2, 2026
Updated: description, severity
Apr 2, 2026
Actively Exploited
Apr 3, 2026
Exploit Available
Apr 3, 2026
Patch Available
Apr 3, 2026

Version History

v3
Last enriched 4d ago
v3Tier C4d ago

Updated severity to CRITICAL and provided a more detailed description of the vulnerability.

descriptionseverity
via VulDB
v2Tier C4d ago

Updated vendor to Apple, product to macOS, severity to CRITICAL, and noted that no exploit is available.

vendorproductpatchAvailable
via VulDB
v14d ago

Initial creation