Impact
An out-of-bounds read has been addressed via improved bounds checking, but the flaw can still lead to an unexpected system termination when triggered by a malicious app. This results in a denial of service by crashing the operating system. The bug does not expose or alter sensitive data, so its threat to confidentiality or integrity is minimal.
Affected Systems
Apple iOS, iPadOS, macOS (Tahoe), tvOS, visionOS, and watchOS versions older than 26.6 are affected. Each platform received a fix in 26.6, the same release used to remediate the issue.
Risk and Exploitability
The CVSS score of 5.5 indicates a moderate severity level. The EPSS score of less than 1 % suggests an exceptionally low probability of exploitation under current circumstances, and the vulnerability is not listed in CISA’s KEV catalog. The most probable attack vector is a malicious application supplying crafted input to the vulnerable component, which can induce the crash once the bounds check fails. No public exploit is documented in the available data, so the actual risk hinges on the likelihood that an adversary can deliver such malicious input.
OpenCVE Enrichment