CVE-2025-43376
Description
A logic issue was addressed with improved state management. This issue is fixed in Safari 26, iOS 18.7.7 and iPadOS 18.7.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. A remote attacker may be able to view leaked DNS queries with Private Relay turned on.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
A logic issue in Apple's Private Relay could let a remote attacker view leaked DNS queries, weakening the privacy protection.
Root
Cause
CVE-2025-43376 is a logic issue in Apple's iCloud Private Relay feature that was addressed with improved state management. The vulnerability could allow a remote attacker to observe DNS queries that should have been hidden by Private Relay's anonymizing proxy, undermining the feature's core privacy guarantee [1][2].
Exploitation
The attack requires no specific privileges or user interaction; a remote attacker on the network path may be able to view leaked DNS queries while the victim has Private Relay enabled. The precise attack vector is not disclosed, but the bug lies in how Safari or the OS handles the relay's routing state, potentially leaking DNS lookups outside the encrypted tunnel [3].
Impact
Successful exploitation bypasses one of iCloud Private Relay's primary functions—preventing network observers from associating the user's IP address with their DNS queries. An attacker could learn which websites the user visits, breaking the privacy promise of the feature [1][4].
Mitigation
Apple fixed this issue in Safari 26, iOS 18.7.7, iPadOS 18.7.7, iOS 26, iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, and watchOS 26. All affected devices should be updated to the latest OS versions to protect against DNS leakage [2][3][4]. No workaround is available; enabling Private Relay on unpatched systems continues to expose users to this risk.
AI Insight generated on May 19, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
8cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <26.0
- (no CPE)range: <26
- Range: <18.7.7
- Range: <26
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- support.apple.com/en-us/125108nvdRelease NotesVendor Advisory
- support.apple.com/en-us/125113nvdRelease NotesVendor Advisory
- support.apple.com/en-us/125114nvdRelease NotesVendor Advisory
- support.apple.com/en-us/125115nvdRelease NotesVendor Advisory
- support.apple.com/en-us/125116nvdRelease NotesVendor Advisory
- support.apple.com/en-us/125110nvd
- support.apple.com/en-us/126793nvd
News mentions
0No linked articles in our index yet.