Description
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to disclose kernel memory.
Published: 2026-09-14
Score: n/a
EPSS: n/a
KEV: No
Impact: Kernel memory disclosure
Action: Patch
AI Analysis

Impact

An invalid input check caused an out‑of‑bounds read in the operating system kernel, which may allow an application to read sensitive kernel memory. The vulnerability does not provide immediate execution of code, but the disclosed data could assist an attacker in building more advanced attacks. The problem is specifically an overflow that lets the code read beyond a defined buffer boundary, exposing confidential information.

Affected Systems

Apple iOS, iPadOS, macOS, tvOS, visionOS, and watchOS are all affected. Versions prior to the public release of the iOS 27, iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, and watchOS 27 builds contain the issue; the fix is included in these 27 releases and later.

Risk and Exploitability

The EPSS is not available and the vulnerability is not listed in CISA KEV, so a precise exploitation probability cannot be quantified. Based on the description, the likely attack vector is a compromised or malicious application that can trigger the out‑of‑bounds read and obtain kernel data. Since the flaw involves reading kernel memory, the impact can contribute to confidentiality breaches and may support future attacks that require kernel information. The lack of an available CVSS score means the concrete severity is undefined, but the potential for sensitive data leakage warrants prompt action.

Generated by OpenCVE AI on September 15, 2026 at 08:03 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update all Apple operating systems to the latest 27 releases or later.
  • Restart the device to ensure kernel changes take effect.
  • If the device cannot be updated, restrict the device to run only sandboxed applications and consider limiting network access to nonessential apps.

Generated by OpenCVE AI on September 15, 2026 at 08:03 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 08:30:00 +0000

Type Values Removed Values Added
Title Kernel Memory Disclosure via Out‑Of‑Bounds Read in Apple Operating Systems
Weaknesses CWE-125

Tue, 15 Sep 2026 03:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos
Vendors & Products Apple
Apple ios And Ipados
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to disclose kernel memory.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-14T20:50:31.612Z

Reserved: 2026-09-08T16:43:41.873Z

Link: CVE-2026-86903

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T21:17:41.140

Modified: 2026-09-14T21:17:41.140

Link: CVE-2026-86903

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T08:15:13Z

Weaknesses