Description
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
Published: 2026-07-27
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in memory initialization allows an application to access uninitialized data, which can cause the operating system to terminate unexpectedly. The vulnerability can be leveraged by a malicious app to trigger the crash, leading to repeated shutdowns or restarts and affecting availability. The weakness corresponds to improper initialization of objects, a known cause of unrecoverable failures.

Affected Systems

iOS, iPadOS, macOS (Sequoia 15.7.8, Sonoma 14.8.8, Tahoe 26.6), tvOS, visionOS, and watchOS running a version older than the fixed releases are susceptible.

Risk and Exploitability

The issue does not expose remote code execution or data leakage; it is limited to availability. The EPSS score of less than 1% indicates a very low likelihood of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is local, where a malicious application on the device triggers the crash. Although the probability of exploitation is low, the high CVSS score alerts to the significant impact on device operability if targeted.

Generated by OpenCVE AI on August 4, 2026 at 13:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade all Apple devices to the latest OS releases that contain the memory‑handling fix (iOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, etc.), ensuring the vulnerable code is replaced.
  • If an immediate upgrade is not possible, identify and remove or temporarily disable any untrusted or suspect applications that could trigger the crash to mitigate repeat terminations.
  • Configure the system to automatically install the newest updates through the App Store or system settings, and verify that future updates are applied promptly to maintain protection.

Generated by OpenCVE AI on August 4, 2026 at 13:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 04 Aug 2026 14:15:00 +0000

Type Values Removed Values Added
Title Memory Initialization Issue Leading to Unexpected System Termination

Mon, 03 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Title Memory Initialization Bug Causing System Crash in Apple Operating Systems
Weaknesses CWE-399

Tue, 28 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Memory Initialization Bug Causing System Crash in Apple Operating Systems
Weaknesses CWE-399
CWE-665

Tue, 28 Jul 2026 04:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T16:31:59.267Z

Reserved: 2026-07-20T18:10:53.025Z

Link: CVE-2026-64775

cve-icon Vulnrichment

Updated: 2026-07-28T16:01:59.573Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:17:15.517

Modified: 2026-07-29T19:48:46.097

Link: CVE-2026-64775

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T14:00:03Z

Weaknesses