Description
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to memory corruption.
Published: 2026-08-17
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises from improper memory handling while processing maliciously crafted web content on Apple operating systems. The flaw can lead to memory corruption, which may enable arbitrary code execution or cause a denial of service. This weakness represents unsafe buffer manipulation within the web content parsing subsystem.

Affected Systems

Affected versions include Apple iOS 18.7.10, iOS 26.6.1, Apple iPadOS 18.7.10, iPadOS 26.6.1, and Apple macOS Tahoe 26.6.2 on Apple hardware.

Risk and Exploitability

No publicly available CVSS or EPSS scores are attached to this entry, and the vulnerability is not listed in the CISA KEV catalog. Exploitation would likely require an attacker to deliver malicious web content that a user loads in a browser, after which the memory corruption could lead to arbitrary code execution or a crash. The lack of exploitation data suggests that while the technical impact is severe, the likelihood of active exploitation remains uncertain but potentially high if discovered by adversaries.

Generated by OpenCVE AI on August 18, 2026 at 00:10 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Apple iOS, iPadOS, or macOS Tahoe to the latest patched release (iOS 18.7.10 or 26.6.1, iPadOS 18.7.10 or 26.6.1, macOS Tahoe 26.6.2).
  • Limit exposure of untrusted web content by enabling web content filtering or blocking.
  • If the patch is not currently available, consider disabling or restricting web browser functionality that processes external content until a fix is deployed.

Generated by OpenCVE AI on August 18, 2026 at 00:10 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 18 Aug 2026 00:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption via Malicious Web Content in Apple Operating Systems
Weaknesses CWE-122
CWE-787

Mon, 17 Aug 2026 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Vendors & Products Apple
Apple ios And Ipados
Apple macos

Mon, 17 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to memory corruption.
References

Subscriptions

Apple Ios And Ipados Macos
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-08-17T21:30:42.172Z

Reserved: 2026-07-22T00:45:26.179Z

Link: CVE-2026-65341

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-17T22:17:25.103

Modified: 2026-08-17T22:17:25.103

Link: CVE-2026-65341

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-18T00:15:03Z

Weaknesses