Description
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, macOS Sequoia 15.7.3, macOS Sonoma 14.8.3, macOS Tahoe 26.2. An app may be able to elevate privileges.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: High
Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-f6q6-cgpm-5wr2: A logic issue was addressed with improved checks↗2025-12-12 ▶ CVEListCVE-2025-43512: A logic issue was addressed with improved checks↗2025-12-12 ▶ VulnCheckApple iOS/iPadOS and macOS Sequoia/Sonoma/Tahoe Privilege Escalation↗2025 ▶ 📋Vendor Advisories
4AppleCVE-2025-43512: macOS Sequoia 15.7.3↗2025-12-12 ▶ AppleCVE-2025-43512: macOS Tahoe 26.2↗2025-12-12 ▶ AppleCVE-2025-43512: iOS 18.7.3 and iPadOS 18.7.3↗2025-12-12 ▶ AppleCVE-2025-43512: macOS Sonoma 14.8.3↗2025-12-12 ▶ 🕵️Threat Intelligence
1WizCVE-2025-43512 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶