Impact
An out‑of‑bounds write was investigated in Apple’s graphics stack and addressed by improved bounds checking. This out‑of‑bounds write corresponds to CWE‑787, a buffer overflow vulnerability. Crafting a malicious 3‑D scene that exceeds expected limits can trigger the out‑of‑bounds write and cause the rendering process to terminate unexpectedly, leading to a denial of service that disrupts device usability but does not provide evidence of code execution or data leakage.
Affected Systems
Vulnerable Apple products include iOS and iPadOS, macOS (Golden Gate 27, Sequoia 15.8, Tahoe 26.7), tvOS 27, visionOS 27, and watchOS 27. The issue was fixed starting with iOS 26.7 / iPadOS 26.7, iOS 27 / iPadOS 27, and corresponding macOS, tvOS, visionOS, and watchOS releases.
Risk and Exploitability
Severity metrics are not high—CVSS 4.3 and EPSS < 1% indicate a low exploitation probability, and the vulnerability is not listed in CISA KEV catalog. The attack likely requires the attacker to supply or influence a 3‑D scene that is processed by the device, so user interaction or an active component is necessary. While the low EPSS score and absence of exploit data suggest low risk, the impact is a denial of service that can disrupt device usability.
OpenCVE Enrichment