Description
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker with physical access to a locked device may be able to view sensitive user information.
Published: 2026-07-27
Score: 4.6 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An out‑of‑bounds read in certain Apple operating systems can allow an attacker who has physical access to a locked device to read sensitive user data, leading to a privacy breach. The flaw was mitigated by adding stricter bounds checking in the affected OS releases. Since the vulnerability arises from reading memory beyond its bounds, attackers could potentially access data that should be protected, compromising user confidentiality.

Affected Systems

Apple’s iOS and iPadOS version 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6 are impacted. Devices running earlier versions of these operating systems are susceptible unless they have been updated to the listed releases.

Risk and Exploitability

The security risk is tied to physical possession of the device while it is locked; no known network‑based exploitation vector exists. The EPSS score is < 1%, indicating a very low but non‑zero probability of exploitation. The vulnerability is not listed in CISA’s KEV catalog, suggesting no widely documented or active exploitation. Nevertheless, attackers with access to a locked device could view private data, so the vulnerability remains significant for users who may be in environments where physical device access is possible.

Generated by OpenCVE AI on August 3, 2026 at 16:13 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the device to the latest iOS 26.6 or iPadOS 26.6 for iOS products, or to macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, or macOS Tahoe 26.6 for Mac products.
  • Configure the device to require a strong passcode or biometrics and ensure the lock screen is enabled at all times.
  • Limit physical access to the device by using case locks or docking station security and disable any removable media or accessories that can be used to connect to the device.
  • In the event of device loss or theft, use the remote wipe feature to erase all data and protect sensitive information.

Generated by OpenCVE AI on August 3, 2026 at 16:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 03 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Title Physical Access Can Leak Sensitive Information via Out‑of‑Bounds Read in Apple OS

Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Physical Access Can Leak Sensitive Information via Out‑of‑Bounds Read in Apple OS
Weaknesses CWE-125
CWE-200
CWE-416
Metrics cvssV3_1

{'score': 4.6, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 02:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Vendors & Products Apple
Apple ios And Ipados
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker with physical access to a locked device may be able to view sensitive user information.
References

Subscriptions

Apple Ios And Ipados Ipados Iphone Os Macos
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T14:28:20.421Z

Reserved: 2026-05-01T22:46:27.815Z

Link: CVE-2026-43753

cve-icon Vulnrichment

Updated: 2026-07-28T14:28:10.537Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:16:59.857

Modified: 2026-07-28T19:32:15.330

Link: CVE-2026-43753

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T16:15:03Z

Weaknesses
  • CWE-125

    Out-of-bounds Read

  • CWE-200

    Exposure of Sensitive Information to an Unauthorized Actor

  • CWE-416

    Use After Free