CVE-2025-43424
published 2025-11-04CVE-2025-43424: The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1. A malicious HID device may cause an…
PriorityP426medium6.5CVSS 3.1
AVAACLPRNUINSUCNINAH
EPSS
0.28%
19.9th percentile
The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1. A malicious HID device may cause an unexpected process crash.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_26.1_and_ipados | — | — |
| apple | ios_and_ipados | < 26.1 | 26.1 |
| apple | ipados | < 26.1 | 26.1 |
| apple | iphone_os | < 26.1 | 26.1 |
| apple | macos | < 26.1 | 26.1 |
| apple | macos_tahoe | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jp2w-2c9w-v4jw: The issue was addressed with improved bounds checks
ghsa_unreviewed·2025-11-04
CVE-2025-43424 [HIGH] CWE-119 GHSA-jp2w-2c9w-v4jw: The issue was addressed with improved bounds checks
The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS 26.1. A malicious HID device may cause an unexpected process crash.
Apple
CVE-2025-43424: macOS Tahoe 26.1
vendor_apple·2025-11-03·CVSS 6.5
CVE-2025-43424 [MEDIUM] CVE-2025-43424: macOS Tahoe 26.1
Apple Security Update: About the security content of macOS Tahoe 26.1
Product: macOS Tahoe
Version: 26.1
CVE: CVE-2025-43424
Component: Multi-Touch
Impact: A malicious HID device may cause an unexpected process crash
Description: The issue was addressed with improved bounds checks.
Apple
CVE-2025-43424: iOS 26.1 and iPadOS 26.1
vendor_apple·2025-11-03·CVSS 6.5
CVE-2025-43424 [MEDIUM] CVE-2025-43424: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43424
Component: Multi-Touch
Impact: A malicious HID device may cause an unexpected process crash
Description: The issue was addressed with improved bounds checks.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-11-04
Published