Description
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Mounting a disk image with maliciously crafted files may lead to unexpected system termination.
Published: 2026-09-14
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch Immediately
AI Analysis

Impact

An out‑of‑bounds write flaw is triggered when a disk image containing maliciously crafted data is mounted on Apple devices. The vulnerability is classified as CWE‑787, and can cause the operating system to crash or terminate unexpectedly. The flaw is mitigated by improved bounds checking in newer releases, but any older version remains vulnerable.

Affected Systems

Devices running Apple iOS, iPadOS, or macOS prior to the patch releases—iOS 26.7, iPadOS 26.7, iOS 27, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7—are affected. All later versions contain the fix and are not impacted.

Risk and Exploitability

The CVSS score of 6.5 indicates medium severity, and the EPSS score of less than 1% shows low exploitation probability. The vulnerability is not listed in the CISA KEV catalog, and no public exploit is known. However, mounting a manipulated disk image is the required condition for exploitation, which may be possible through local or remote delivery mechanisms such as file sharing, email attachments, or device sync. Because the issue causes a denial of service, prompt remediation is advised.

Generated by OpenCVE AI on September 20, 2026 at 20:57 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update all affected Apple devices to the latest iOS, iPadOS, or macOS releases that include the bounds‑checking fix.
  • Avoid mounting disk images from unknown or unverified sources, and verify the integrity of the image before mounting.
  • If available, configure system settings to restrict or sandbox disk image mounting operations so that only trusted sources can mount images.

Generated by OpenCVE AI on September 20, 2026 at 20:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 21:15:00 +0000

Type Values Removed Values Added
Title Apple OS Out-of-Bounds Write Causing Crash

Sun, 20 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑bounds write in disk‑image mounting leads to system crash
Weaknesses CWE-119

Wed, 16 Sep 2026 01:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipados
Apple iphone Os
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Vendors & Products Apple ipados
Apple iphone Os

Tue, 15 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 09:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑bounds write in disk‑image mounting leads to system crash
Weaknesses CWE-119

Tue, 15 Sep 2026 01:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Vendors & Products Apple
Apple ios And Ipados
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Mounting a disk image with maliciously crafted files may lead to unexpected system termination.
References

Subscriptions

Apple Ios And Ipados Ipados Iphone Os Macos
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-15T15:10:33.189Z

Reserved: 2026-09-01T21:13:17.749Z

Link: CVE-2026-84519

cve-icon Vulnrichment

Updated: 2026-09-15T15:10:26.078Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:28.457

Modified: 2026-09-16T01:07:59.453

Link: CVE-2026-84519

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T21:00:05Z

Weaknesses