Impact
An unexpected Safari crash can be triggered by processing maliciously crafted web content. The flaw results from insufficient state management within Safari’s web rendering engine, causing a buffer overrun or overread; the impact is denial of service because the browser terminates abruptly, disrupting user sessions. This weakness aligns with CWE-119 and CWE-120. Based on the description, the likely attack vector is the delivery of malicious web content, such as a crafted link or an embedded frame, that causes the crash.
Affected Systems
Apple iOS and iPadOS devices running any version older than the patched releases of iOS 18.7.10, iPadOS 18.7.10, iOS 26.6.1, or iPadOS 26.6.1 are affected, as are macOS systems older than Tahoe 26.6.2 and visionOS devices before version 27. These platforms integrate Safari and the vulnerable web rendering engine, so any device on those operating systems can experience a crash when loading untrusted web pages.
Risk and Exploitability
The CVSS base score is 4.3, indicating moderate severity. The EPSS score is less than 1 %, showing a very low likelihood of exploitation. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that an attacker can trigger the crash remotely by delivering malicious web content via a link, an embedded frame, or a malicious website. No local privileges or additional conditions are required, making it a straightforward remote threat that results only in a browser crash.
OpenCVE Enrichment