CVE-2025-31257

Published: May 16, 2025Last modified: October 30, 2025

Description

This issue was addressed with improved memory handling. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.

Severity score breakdown

ParameterValue
Base score4.7
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionREQUIRED
ScopeCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactLOW
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopenjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
25 LTSopenjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
Streamopenjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
Hardened Containers23 LTSopenjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
Streamopenjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
Liberica JDK8jdk-fullFixed (8u472+9)
jre-fullFixed (8u472+9)
11jdk-fullFixed (11.0.29+10)
jre-fullFixed (11.0.29+10)
17jdk-fullFixed (17.0.17+11)
jre-fullFixed (17.0.17+11)
21jdk-fullFixed (21.0.9+11)
jre-fullFixed (21.0.9+11)
25jdk-fullFixed (25.0.1+11)
jre-fullFixed (25.0.1+11)

References

Published BELL-SAs

ON THIS PAGE