BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Apple Patches Actively Exploited ImageIO Zero-Day Vulnerability

  • Apple has released security updates to fix a major flaw affecting iOS, iPadOS, and macOS.
  • The flaw, tracked as CVE-2025-43300, is currently being exploited in targeted attacks.
  • The vulnerability affects the ImageIO framework, which could result in memory corruption from malicious image files.
  • Security patches are available for several recent versions of iOS, iPadOS, and macOS.
  • This is the seventh zero-day vulnerability Apple has addressed in 2025.

Apple issued security patches on August 21, 2025, to address a zero-day vulnerability that has been actively exploited on devices running iOS, iPadOS, and macOS. The company acted after identifying an attack that targeted specific individuals using this flaw.

- Advertisement -

The vulnerability, tracked as CVE-2025-43300, appears in the ImageIO framework. According to Apple, the flaw allows attackers to cause memory corruption when a device processes a specially crafted image. In its advisory, Apple stated, “Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.”

Apple discovered the bug internally and has fixed it with improved bounds checking in the following software versions: iOS 18.6.2 and iPadOS 18.6.2 for phones and tablets from iPhone XS and later, several iPad Pro and iPad models; iPadOS 17.7.10 for older iPad Pro and iPad 6th generation; macOS Ventura 13.7.8 for Ventura users; macOS Sonoma 14.7.8 for Sonoma, and macOS Sequoia 15.6.1 for Sequoia.

The company has not disclosed who is responsible for the attacks or the identities of the victims. However, Apple warned that the flaw is likely being used in highly targeted campaigns.

Including this latest update, Apple has now patched seven zero-day vulnerabilities in 2025 that were actively exploited. Other flaws addressed earlier this year included CVE-2025-24085, CVE-2025-24200, CVE-2025-24201, CVE-2025-31200, CVE-2025-31201, and CVE-2025-43200. In July, another patch fixed a Safari vulnerability (CVE-2025-6558) linked to attacks on the Chrome browser.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

U.S. Blocks Anthropic’s Top AI Models Over Security Fears

The U.S. government ordered Anthropic to suspend foreign access to its advanced AI models,...

Critical Splunk Vulnerability Allows Unauthenticated RCE

Splunk has patched a critical vulnerability, CVE-2026-20253, rated 9.8 on the CVSS scale, allowing...

AI Agent Bills Operator $6.5k After Wild AWS Spree

An AI agent deployed by an operator named JertLinc autonomously spun up five powerful...

Bitcoin ETF Inflows Spark Hope After 2026 Price Lows

Bitcoin has plunged to 2026 lows of under $60,000, down 50% from its October...

Investors Bet on Onchain Credit Infrastructure Over DeFi

Morpho Labs raises $175M from investors like Paradigm, aiming to become a foundational credit...

Must Read

How to Choose a Cryptocurrency Exchange: Major Risks and Expert Advice

During the bitcoin frenzy, in late 2017, Coinbase, one of the key players in the global cryptocurrency market, stopped trading operations. At a point...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading