Impact
The vulnerability is a use‑after‑free bug in Apple’s memory management that can be triggered by maliciously crafted web content. It has been addressed with improved memory management; the issue is fixed in Safari 26.6.1, iOS 18.7.10 and 26.6.1, iPadOS 18.7.10 and 26.6.1, and macOS Tahoe 26.6.2. Processing such content may lead to an unexpected process crash, resulting in instability and potential denial of service. The flaw does not provide code execution or data disclosure.
Affected Systems
Apple iOS and iPadOS devices running versions older than iOS 18.7.10 and iOS 26.6.1, iPadOS older than iOS 18.7.10 and iOS 26.6.1, and macOS Tahoe versions older than 26.6.2 are affected. Updated releases are iOS 18.7.10/26.6.1, iPadOS 18.7.10/26.6.1, and macOS Tahoe 26.6.2.
Risk and Exploitability
The vulnerability is not listed in the CISA KEV catalog and has an EPSS score of < 1%, indicating a low but non-zero exploitation probability. The CVSS score of 6.5 indicates a medium severity. It is inferred that an attacker would need to lure a user to a malicious website that serves specially crafted content, which could trigger the crash. Although the flaw does not provide direct remote code execution, it can be used to disrupt device operation and create a denial-of-service condition, especially if the crash occurs in a critical subsystem.
OpenCVE Enrichment