Description
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Published: 2026-08-17
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A memory corruption flaw caused by improper locking in Safari can be triggered by maliciously crafted web content, leading to an unexpected crash that denies service to users.

Affected Systems

Apple devices running iOS and iPadOS versions 18.7.10, 26.6.1, and macOS Tahoe 26.6.2 are affected. Users should check their OS version and update to the release that contains the fix.

Risk and Exploitability

The CVSS severity is not provided, but the vulnerability can be exploited by delivering crafted HTML or JavaScript to a victim’s Safari browser. With an unavailable EPSS score and no listing in KEV, the exact likelihood of exploitation remains uncertain, yet the potential for denial of service is high. Attackers would need to convince the user to load the malicious content.

Generated by OpenCVE AI on August 17, 2026 at 23:30 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to iOS 18.7.10, iPadOS 18.7.10, iOS 26.6.1, iPadOS 26.6.1, or macOS Tahoe 26.6.2, which contain the security fix.
  • Keep Safari updated to the latest version that includes the relevant patch.
  • Until the update can be applied, avoid visiting sites known to supply malicious content and restart Safari if a crash occurs.

Generated by OpenCVE AI on August 17, 2026 at 23:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 18 Aug 2026 00:00:00 +0000

Type Values Removed Values Added
Title Memory Corruption Leading to Safari Crash via Improper Locking
Weaknesses CWE-416
CWE-787

Mon, 17 Aug 2026 23:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Vendors & Products Apple
Apple ios And Ipados
Apple macos

Mon, 17 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Description A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References

Subscriptions

Apple Ios And Ipados Macos
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-08-17T21:29:15.067Z

Reserved: 2026-07-20T18:10:53.025Z

Link: CVE-2026-64779

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-17T22:17:22.873

Modified: 2026-08-17T22:17:22.873

Link: CVE-2026-64779

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-17T23:45:03Z

Weaknesses