Junglewise Threat Intelligence

CVE-2026-43739: Apple Multiple Operating Systems out-of-bounds write

CVE-2026-43739 · Severity: info · Published 2026-07-27

Technologies: Apple Tvos, Apple macOS Tahoe, Apple watchOS, Apple Visionos, Apple iPadOS. Vendors: Apple.

Executive brief

A vulnerability in Apple's operating systems could allow a malicious application to cause a sudden system crash or termination. This affects a wide range of devices including iPhones, iPads, Macs, and Apple Watches. The issue has been resolved in the latest software updates, which improve how the system handles memory boundaries.

Technical details

An out-of-bounds write vulnerability exists in multiple Apple operating systems due to insufficient bounds checking. A local malicious application could exploit this flaw to write data outside of intended memory buffers, leading to unexpected system termination or a denial-of-service condition. The vulnerability was addressed by implementing improved validation of memory boundaries. Affected platforms include iOS, iPadOS, macOS Tahoe, tvOS, visionOS, and watchOS. Users are advised to update to version 26.6 or later of their respective operating systems.

Affected products

  • Apple iOS and iPadOS Before 26.6
  • Apple macOS Tahoe Before 26.6
  • Apple tvOS Before 26.6
  • Apple visionOS Before 26.6
  • Apple watchOS Before 26.6

Timeline

  • 2026-07-27: advisory: Initial disclosure by Apple and NVD publication.
  • 2026-07-27: patched: Fixed in version 26.6 across all affected platforms.

References

Related threats