Impact
An application can exploit a flaw in Apple’s memory handling routines, potentially causing corruption in kernel memory or triggering an unexpected system termination. The vulnerability could allow an app to write to addresses it should not have access to, compromising system stability and potentially enabling further compromises if the corrupted memory is exploited. The impact is contained within the affected operating systems and concerns device integrity and uptime rather than external network exposure.
Affected Systems
Apple’s iOS 26.6.1 and iPadOS 26.6.1 as well as macOS Tahoe 26.6.2 are affected. The flaw was addressed in these updates and only devices running earlier versions are vulnerable. No other Apple products or third‑party operating systems are listed as affected.
Risk and Exploitability
The vulnerability is a kernel memory corruption that could lead to denial of service or further exploitation if the attacker can control the corrupted region. The exact CVSS score is not available in the data, and the EPSS exploitation probability is not provided; thus the probability of exploitation is uncertain. The issue is not listed in the CISA KEV catalog, implying it has not yet been confirmed as a widely used exploit. An attacker would need the ability to run or install a malicious app on the device to trigger the flaw, and no publicly disclosed exploits are reported at this time.
OpenCVE Enrichment