Executive brief
A memory management vulnerability in Apple operating systems could allow a malicious application to crash the device or corrupt sensitive kernel memory. This affects iPhones, iPads, Macs, Apple Watches, and Apple TV devices. Successful exploitation could lead to a total system failure or allow an attacker to gain deeper control over the device's core functions.
Technical details
A use-after-free vulnerability exists in the kernel of multiple Apple operating systems due to improper memory management. A local attacker, via a malicious application, can exploit this flaw to trigger unexpected system termination (denial of service) or corrupt kernel memory. The issue was addressed by improving memory management logic. Affected platforms include iOS, iPadOS, macOS (Tahoe, Sequoia, Sonoma), tvOS, visionOS, and watchOS. Users should update to the latest available versions (e.g., iOS 26.6, macOS 15.7.8) to mitigate the risk.
Affected products
- Apple iOS and iPadOS < 26.6
- Apple macOS Sequoia < 15.7.8
- Apple macOS Sonoma < 14.8.8
- Apple macOS Tahoe < 26.6
- Apple tvOS < 26.6
- Apple visionOS < 26.6
- Apple watchOS < 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: patched