
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-43264 is an out-of-bounds read vulnerability in Apple's Model I/O framework affecting macOS Sequoia versions prior to 15.6. The flaw arises from improper input validation when processing maliciously crafted image or USD (Universal Scene Description) files, which can corrupt process memory or disclose memory contents. It was discovered by Michael DePlante (@izobashi) of Trend Micro Zero Day Initiative and disclosed by Apple on July 29, 2025 alongside the macOS Sequoia 15.6 release. The vulnerability carries a CVSS v3.1 base score of 8.8 (High) (Apple Advisory, Github Advisory).
The root cause is classified as CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer), specifically an out-of-bounds read in Apple's Model I/O framework — the component responsible for importing, exporting, and manipulating 3D scene data including USD files and images. An attacker can exploit this by crafting a malicious image or USD file that, when parsed by the affected framework, triggers a read beyond the intended memory buffer boundary, potentially exposing adjacent memory contents or corrupting process memory. Exploitation requires user interaction (opening or processing the malicious file), but no privileges are required and the attack can be delivered over the network. Apple addressed the issue with improved input validation and memory handling (Apple Advisory, Github Advisory).
Successful exploitation can result in disclosure of sensitive process memory contents, process memory corruption, and potentially arbitrary code execution in the context of the application processing the malicious file. The CVSS scoring reflects high confidentiality, integrity, and availability impact, meaning an attacker could potentially read sensitive data from memory, corrupt application state, or cause application crashes. The attack surface is broad as any macOS Sequoia application that processes USD or image files via the Model I/O framework could be affected (Apple Advisory, Github Advisory).
/Library/Logs/DiagnosticReports/ or ~/Library/Logs/DiagnosticReports/) referencing Model I/O or related frameworks with out-of-bounds memory access signals (e.g., EXC_BAD_ACCESS, SIGSEGV).Apple has released a patch in macOS Sequoia 15.6, which includes improved input validation and memory handling to address this vulnerability. All users running macOS Sequoia versions prior to 15.6 should update immediately via System Settings > General > Software Update. As a temporary workaround prior to patching, users should avoid opening USD files or images from untrusted or unknown sources, and administrators can implement file validation controls or application whitelisting to restrict which applications can process USD files (Apple Advisory).
The Zero Day Initiative published an advisory (ZDI-25-683) shortly after Apple's disclosure, reflecting their role in coordinating the report through researcher Michael DePlante. The CIS (Center for Internet Security) issued an advisory noting multiple vulnerabilities in Apple products that could allow for arbitrary code execution, referencing this update. Community coverage has been limited, consistent with the absence of active exploitation or public PoC code (Apple Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."