This issue was addressed with improved checks. This issue is fixed in Apple Music Classical 2.3 for Android. An app may be able to unexpectedly leak a user's credentials.
References
History

Mon, 18 Aug 2025 13:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200
Metrics cvssV3_1

{'score': 6.2, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 16 Aug 2025 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple apple Music
Apple music
Google
Google android
Vendors & Products Apple
Apple apple Music
Apple music
Google
Google android

Fri, 15 Aug 2025 22:15:00 +0000

Type Values Removed Values Added
Description This issue was addressed with improved checks. This issue is fixed in Apple Music Classical 2.3 for Android. An app may be able to unexpectedly leak a user's credentials.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2025-08-15T21:58:14.676Z

Updated: 2025-08-21T00:27:22.341Z

Reserved: 2025-04-16T15:24:37.088Z

Link: CVE-2025-43201

cve-icon Vulnrichment

Updated: 2025-08-18T12:30:55.944Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-15T22:15:31.930

Modified: 2025-08-18T20:16:28.750

Link: CVE-2025-43201

cve-icon Redhat

No data.