CVE-2025-31257

Published: May 16, 2025Last modified: November 15, 2025

Description

This issue was addressed with improved memory handling. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.

Severity score breakdown

ParameterValue
Base score4.7
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionREQUIRED
ScopeCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactLOW
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopenjdk-nik-23-17Fixed (23.0.10-r0)
openjdk-nik-23-21Fixed (23.1.9-r0)
openjdk-nik-25-25Fixed (25.0.1-r0)
openjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk11-perfFixed (11.0.29_p11-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
openjdk8-perfFixed (8.472_p10-r0)
25 LTSopenjdk-nik-23-17Fixed (23.0.10-r0)
openjdk-nik-23-21Fixed (23.1.9-r0)
openjdk-nik-25-25Fixed (25.0.1-r0)
openjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
Streamopenjdk-nik-23-17Fixed (23.0.10-r0)
openjdk-nik-23-21Fixed (23.1.9-r0)
openjdk-nik-25-25Fixed (25.0.1-r0)
openjdk11Fixed (11.0.29_p10-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17Fixed (17.0.17_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21Fixed (21.0.9_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25Fixed (25.0.1_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
Hardened Containers23 LTSopenjdk-nik-23-17Fixed (23.0.10-r0)
openjdk-nik-23-21Fixed (23.1.9-r0)
openjdk-nik-25-25Fixed (25.0.1-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk11-perfFixed (11.0.29_p11-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
openjdk8-perfFixed (8.472_p10-r0)
Streamopenjdk-nik-23-17Fixed (23.0.10-r0)
openjdk-nik-23-21Fixed (23.1.9-r0)
openjdk-nik-25-25Fixed (25.0.1-r0)
openjdk11-container-jreFixed (11.0.29_p10-r0)
openjdk11-liteFixed (11.0.29_p10-r0)
openjdk17-container-jreFixed (17.0.17_p11-r0)
openjdk17-cracFixed (17.0.17_p12-r0)
openjdk17-liteFixed (17.0.17_p11-r0)
openjdk21-container-jreFixed (21.0.9_p11-r0)
openjdk21-cracFixed (21.0.9_p12-r0)
openjdk21-liteFixed (21.0.9_p11-r0)
openjdk25-container-jreFixed (25.0.1_p11-r0)
openjdk25-liteFixed (25.0.1_p11-r0)
openjdk8Fixed (8.472_p9-r0)
Liberica JDK8jdk-fullFixed (8u472+9)
jre-fullFixed (8u472+9)
11jdk-fullFixed (11.0.29+10)
jre-fullFixed (11.0.29+10)
17jdk-fullFixed (17.0.17+11)
jre-fullFixed (17.0.17+11)
21jdk-fullFixed (21.0.9+11)
jre-fullFixed (21.0.9+11)
25jdk-fullFixed (25.0.1+11)
jre-fullFixed (25.0.1+11)

References

Published BELL-SAs

ON THIS PAGE