Impact
An out‑of‑bounds write bypasses the operating system’s bounds checking, allowing an application to corrupt memory and crash the system, which results in a denial‑of‑service. The issue exists in code that performs writes without sufficient validation, causing the affected OS to terminate unexpectedly. No evidence indicates that the vulnerability can be leveraged for remote code execution or data disclosure; its impact is confined to service availability.
Affected Systems
Vulnerable Apple operating systems include iOS, iPadOS, macOS Sequoia, macOS Sonoma, macOS Tahoe, tvOS, visionOS, and watchOS when the version is older than iOS 26.6, iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, or watchOS 26.6. Devices running these pre‑fixed releases can experience application or system crashes if exploited.
Risk and Exploitability
The EPSS score is reported as less than 1 % and the vulnerability is not listed in CISA KEV, indicating the likelihood of a public exploit is low. The attack vector is inferred to be a malicious or compromised application that runs with sufficient privileges to trigger the out‑of‑bounds write. While no commercial exploit is known, any app that can invoke the affected subsystem could cause a denial‑of‑service, potentially disrupting device functionality.
OpenCVE Enrichment