An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
History

Tue, 30 Jun 2026 00:45:00 +0000

Type Values Removed Values Added
Title Apple Browser and OS Out‑of‑Bounds Write Leading to Crash with Malicious Web Content
Weaknesses CWE-122

Mon, 29 Jun 2026 22:30:00 +0000

Type Values Removed Values Added
Title Apple Browser and OS Out‑of‑Bounds Write Leading to Crash with Malicious Web Content
Weaknesses CWE-122
CWE-787
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 29 Jun 2026 20:15:00 +0000

Type Values Removed Values Added
Description An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-06-29T21:28:46.675Z

Reserved: 2026-05-01T22:46:21.647Z

Link: CVE-2026-43745

cve-icon Vulnrichment

Updated: 2026-06-29T21:27:59.238Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-30T00:30:06Z