CVE-2025-43504: Buffer Overflow
A buffer overflow was addressed with improved bounds checking. This issue is fixed in Xcode 26.1. A user in a privileged network position may be able to cause a denial-of-service.
Other sources
GNU. An out-of-bounds write issue was addressed with improved input validation.
— Apple
lldb. A buffer overflow was addressed with improved bounds checking.
— Apple
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-43504?
CVE-2025-43504 has been rated as a critical vulnerability due to its potential to cause denial-of-service in privileged network positions.
How do I fix CVE-2025-43504?
To fix CVE-2025-43504, update to Xcode version 26.1 or later.
Who is affected by CVE-2025-43504?
CVE-2025-43504 affects users of Xcode versions prior to 26.1.
What causes CVE-2025-43504?
CVE-2025-43504 is caused by a buffer overflow due to inadequate bounds checking in the affected software.
Can CVE-2025-43504 lead to data loss?
CVE-2025-43504 may lead to denial-of-service conditions, which can disrupt access to services but does not directly indicate data loss.