---
id: CVE-2025-43200
title: This issue was addressed with improved checks
summary: >-
  This issue was addressed with improved checks. This issue is fixed in iOS
  15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.1 and
  iPadOS 18.3.1, iPadOS 17.7.5, macOS Sequoia 15.3.1, macOS Sonoma 14.7.4, macOS
  Ventura 13.…
severity: medium
cvss: 4.2
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N'
vendor: apple
product: ipados
affected:
  - ipados < 15.8.4
  - 'ipados >= 16.0, < 16.7.11'
  - 'ipados >= 17.0, < 17.7.5'
  - 'ipados >= 18.0, < 18.3.1'
  - iphone_os < 15.8.4
  - 'iphone_os >= 16.0, <= 16.7.11'
  - 'iphone_os >= 17.0, <= 18.3.1'
  - 'macos >= 13.0, < 13.7.4'
  - 'macos >= 14.0, < 14.7.4'
  - 'macos >= 15.0, < 15.3.1'
  - visionos < 2.3.1
  - watchos < 11.3.1
patched:
  - ipados 18.3.1
  - iphone_os 15.8.4
  - macos 15.3.1
  - visionos 2.3.1
  - watchos 11.3.1
published: '2025-06-16'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T13:10:00.320'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-43200'
references:
  - url: 'https://support.apple.com/en-us/122173'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122174'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122345'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122346'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122900'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122901'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122902'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122903'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/122904'
    label: product-security@apple.com
  - url: >-
      https://citizenlab.ca/2025/06/first-forensic-confirmation-of-paragons-ios-mercenary-spyware-finds-journalists-targeted/
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-43200
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
epss: 0.01191
epssPercentile: 0.66593
kev: true
kevDateAdded: '2025-06-16'
kevDueDate: '2025-07-07'
kevRansomware: false
exploited: true
zeroDay: true
ingestedAt: '2026-09-24T13:43:25.658Z'
---

## Overview

This issue was addressed with improved checks. This issue is fixed in iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.1 and iPadOS 18.3.1, iPadOS 17.7.5, macOS Sequoia 15.3.1, macOS Sonoma 14.7.4, macOS Ventura 13.7.4, visionOS 2.3.1, watchOS 11.3.1. A logic issue existed when processing a maliciously crafted photo or video shared via an iCloud Link. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.

## Affected

- `ipados < 15.8.4`
- `ipados >= 16.0, < 16.7.11`
- `ipados >= 17.0, < 17.7.5`
- `ipados >= 18.0, < 18.3.1`
- `iphone_os < 15.8.4`
- `iphone_os >= 16.0, <= 16.7.11`
- `iphone_os >= 17.0, <= 18.3.1`
- `macos >= 13.0, < 13.7.4`
- `macos >= 14.0, < 14.7.4`
- `macos >= 15.0, < 15.3.1`
- `visionos < 2.3.1`
- `watchos < 11.3.1`

## Remediation

Upgrade past the affected range:

- `ipados 18.3.1`
- `iphone_os 15.8.4`
- `macos 15.3.1`
- `visionos 2.3.1`
- `watchos 11.3.1`
