Description
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
Published: 2026-09-14
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service (System Crash)
Action: Immediate Patch
AI Analysis

Impact

A memory corruption issue caused by incomplete memory handling in Apple operating systems can enable a trusted or malicious application to crash the entire system, resulting in loss of availability. The flaw arises when memory is improperly accessed or written, leading to an unexpected system termination. The primary impact is a denial of service through a system crash, affecting all users who run affected OS versions.

Affected Systems

Apple iOS 26.7, iOS 27, iPadOS 26.7, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27.

Risk and Exploitability

The EPSS score is < 1% and the vulnerability is not listed in the CISA KEV catalog, indicating no known widespread exploitation yet. The flaw likely requires a local application with sufficient privileges to corrupt memory, making the attack vector a trusted or malicious application rather than a remote actor. Because the defect can crash the device, the availability impact is high for any system running an affected OS without the latest patch.

Generated by OpenCVE AI on September 20, 2026 at 19:15 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update to the latest iOS 26.7, iOS 27, iPadOS 26.7, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27.
  • Avoid installing applications from untrusted sources or sideloading apps, as a malicious app could trigger the memory corruption. Only use applications vetted by the Apple App Store.
  • Monitor system crash logs through Console or system diagnostics and report any unexpected crashes to Apple to facilitate further investigation or the deployment of additional mitigations.

Generated by OpenCVE AI on September 20, 2026 at 19:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption Causing System Crash

Thu, 17 Sep 2026 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipados
Apple iphone Os
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple ipados
Apple iphone Os

Wed, 16 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-125
CWE-416
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption Leading to Unexpected System Termination in Apple Operating Systems
Weaknesses CWE-787

Tue, 15 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption Leading to Unexpected System Termination in Apple Operating Systems
Weaknesses CWE-787

Tue, 15 Sep 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-16T17:38:29.566Z

Reserved: 2026-07-22T00:46:31.442Z

Link: CVE-2026-65377

cve-icon Vulnrichment

Updated: 2026-09-16T17:38:23.095Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:22.133

Modified: 2026-09-17T18:45:37.163

Link: CVE-2026-65377

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T19:15:03Z

Weaknesses