Impact
An out-of-bounds read in Apple operating systems could be triggered by a local or malicious application. The flaw allows the app to read memory beyond the intended buffer, potentially exposing kernel data and causing the operating system to terminate unexpectedly.
Affected Systems
Apple iOS 26.6.1, iPadOS 26.6.1 and macOS Tahoe 26.6.2 are affected. No other versions or products are listed.
Risk and Exploitability
The CVSS score is not provided and EPSS is not available, so the overall severity cannot be quantified. The issue is not listed in the CISA KEV catalog. However, a malicious application that is able to provide specially crafted input could exploit the flaw. Because the vulnerability is surface-level and requires application-level execution, the likelihood of an unprivileged attacker exploiting it is moderate, though the consequence could be system termination or kernel memory disclosure.
OpenCVE Enrichment