Apple Backports Fix for CVE-2025-43300 Exploited in Sophisticated Spyware Attack

Apple Backports Fix for CVE-2025-43300 Exploited in Sophisticated Spyware Attack

Apple has released timely updates to fix a critical security flaw (CVE-2025-43300) that has been exploited in targeted attacks using sophisticated methods. These patches also address multiple other vulnerabilities across Apple devices, enhancing overall security. #CVE-2025-43300 #iOSUpdate

Keypoints

  • Apple backported fixes for the actively exploited CVE-2025-43300 security flaw in ImageIO.
  • The vulnerability could cause memory corruption when processing malicious images, with a CVSS score of 8.8.
  • Recent updates include iOS 18.6.2, iPadOS 18.6.2, macOS Ventura 13.7.8, and older versions for legacy devices.
  • Multiple additional security flaws were addressed in the latest updates, covering various components like Safari, WebKit, and Xcode.
  • Although no evidence of weaponization exists, users are advised to update their systems promptly for optimal protection.

Read More: https://thehackernews.com/2025/09/apple-backports-fix-for-cve-2025-43300.html