Description
A permissions issue was addressed with improved path validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to modify protected system files.
Published: 2026-09-14
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation via System File Modification
Action: Update OS
AI Analysis

Impact

A permissions issue was addressed with improved path validation. The flaw allows a local application to modify protected system files, potentially overwriting critical binaries or configuration files. Such manipulation could enable persistence, denial of service, or further compromise of the operating system.

Affected Systems

Affected Apple products include iOS 27 and iPadOS 27; macOS Golden Gate 27, macOS Sequoia 15.8 and macOS Tahoe 26.7; tvOS 27, visionOS 27, and watchOS 27. Devices running any of these versions are susceptible.

Risk and Exploitability

The vulnerability is a local privilege escalation that can be exploited by any app installed on the device, ensuring the attack vector is local and requires no remote network conditions. The CVSS score is 9.8, and the EPSS score indicates a very low likelihood of exploitation (< 1%). The flaw is not listed in CISA KEV. Because the attack requires a malicious app or an app supplied by a compromised developer, the exploitation likelihood depends on the prevalence of vulnerable OS versions and the use of trusted applications. The potential impact remains significant until the devices are updated to the patched releases.

Generated by OpenCVE AI on September 20, 2026 at 21:31 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the device to the latest iOS 27, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, or watchOS 27 releases that include the path validation fix.
  • Restrict installation of applications to those obtained from the official App Store or verified developers, avoiding third‑party or sideloaded apps that may exploit the flaw.
  • Ensure that any application uses proper input validation for file paths, preventing arbitrary access and adhering to best practices for CWE-120.
  • Implement Mobile Device Management and monitor application repositories, ensuring devices remain secured against similar permission bypass issues.

Generated by OpenCVE AI on September 20, 2026 at 21:31 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipados
Apple iphone Os
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple ipados
Apple iphone Os

Wed, 16 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-120
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Permission Bypass Enables Modification of Protected System Files
Weaknesses CWE-22
CWE-284

Tue, 15 Sep 2026 08:00:00 +0000

Type Values Removed Values Added
Title Permission Bypass Enables Modification of Protected System Files
Weaknesses CWE-22
CWE-284

Tue, 15 Sep 2026 04:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A permissions issue was addressed with improved path validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to modify protected system files.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-16T14:38:39.247Z

Reserved: 2026-09-01T21:13:23.285Z

Link: CVE-2026-84609

cve-icon Vulnrichment

Updated: 2026-09-16T14:38:16.761Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:36.133

Modified: 2026-09-18T12:52:55.113

Link: CVE-2026-84609

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T21:45:04Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')