Description
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted asset catalog may lead to unexpected process termination.
Published: 2026-09-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

An out-of-bounds write was discovered in Apple’s handling of asset catalog files. The flaw arises from insufficient bounds checking during catalog parsing, allowing a maliciously crafted catalog to overwrite memory beyond its intended buffer. When an affected process parses such a catalog, it can terminate unexpectedly, leading to a denial of service. This weakness corresponds to an out-of-bounds write, a classic buffer corruption flaw (CWE-787).

Affected Systems

The issue affects Apple devices running iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS OS 27, visionOS 27, and watchOS 27. All these operating systems require the specified updates to contain the patch that restores proper bounds checking in catalog processing.

Risk and Exploitability

The EPSS score is <1% and the vulnerability is not listed in CISA’s KEV catalog, indicating limited known exploitation so far. However, an attacker who can supply a malicious asset catalog could trigger the out-of-bounds write, causing an application or the system to crash. Because the vulnerability requires the processing of a specially crafted catalog, the attack vector is likely local or through a compromised application that loads such a file. The risk remains moderate until more information on exploitation emerges, but applying the patch is the prudent measure.

Generated by OpenCVE AI on September 20, 2026 at 20:27 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Install the latest update for each affected operating system—iOS 27, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27—on all Apple, restrict the use of asset catalogs to those that are digitally signed and trusted; disable automatic loading of external or unsigned assets to prevent malicious catalog processing.
  • Monitor crash logs for unexpected terminations on these devices and apply new updates as soon as they become available to keep protections current.
  • Consider configuring device management or MDM settings to enforce only signed material and block unauthorized catalog loading.

Generated by OpenCVE AI on September 20, 2026 at 20:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 20:45:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Asset Catalog Processing Causes Process Termination

Wed, 16 Sep 2026 20:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipados
Apple iphone Os
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple ipados
Apple iphone Os

Wed, 16 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Asset Catalog Processing Leads to Process Termination
Weaknesses CWE-787

Tue, 15 Sep 2026 08:00:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Asset Catalog Processing Leads to Process Termination
Weaknesses CWE-787

Tue, 15 Sep 2026 04:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted asset catalog may lead to unexpected process termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-16T15:07:31.181Z

Reserved: 2026-09-01T21:13:17.748Z

Link: CVE-2026-84511

cve-icon Vulnrichment

Updated: 2026-09-16T15:06:09.766Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:27.620

Modified: 2026-09-16T19:43:25.860

Link: CVE-2026-84511

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T20:30:05Z

Weaknesses