Description
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D scene may lead to unexpected process termination.
Published: 2026-09-14
Score: n/a
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Patch Now
AI Analysis

Impact

An out‑of‑bounds write was discovered in Apple’s graphics stack, addressed by improved bounds checking. Crafting a malicious 3‑D scene that exceeds expected limits can trigger the out‑of‑bounds write and cause the rendering process to terminate unexpectedly. The resulting denial of service can affect user experience and application availability, though no evidence of code execution or data leakage is present in the description.

Affected Systems

Vulnerable Apple products include iOS and iPadOS, macOS (Golden Gate 27, Sequoia 15.8, Tahoe 26.7), tvOS 27, visionOS 27, and watchOS 27. The issue was fixed starting with iOS 26.7 / iPadOS 26.7, iOS 27 / iPadOS 27, and corresponding macOS, tvOS, visionOS, and watchOS releases.

Risk and Exploitability

Severity metrics are not provided; EPSS is missing and the vulnerability is not listed in CISA’s KEV catalog. The attack likely requires an attacker to supply or influence a 3‑D scene that is processed by the device, so an active component or user‑driven input is necessary. While the absence of exploit data suggests low to moderate risk, the impact is a denial of service that can disrupt device usability.

Generated by OpenCVE AI on September 15, 2026 at 10:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Install the latest iOS, iPadOS, macOS, tvOS, visionOS, and watchOS updates (vulnerable versions listed) to apply the bounds‑checking fix.
  • Disable or block third‑party or user‑supplied 3‑D scenes until the update is applied as a temporary measure.
  • Notify stakeholders and schedule device updates during maintenance windows to ensure all devices receive the patch promptly.

Generated by OpenCVE AI on September 15, 2026 at 10:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 10:45:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in Apple 3D Rendering Stack Leads to Crash
Weaknesses CWE-119

Tue, 15 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D scene may lead to unexpected process termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-14T20:49:13.266Z

Reserved: 2026-09-01T21:13:17.749Z

Link: CVE-2026-84526

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T21:17:29.187

Modified: 2026-09-14T21:17:29.187

Link: CVE-2026-84526

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T10:30:12Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer