Executive brief
A memory management vulnerability exists in Apple's operating systems, including iOS, macOS, and watchOS. A malicious application installed on a device could exploit this flaw to cause the system to crash or terminate unexpectedly. This could lead to service disruptions and potential data loss if the system becomes unstable.
Technical details
A use-after-free (UAF) vulnerability exists across multiple Apple operating systems due to improper memory management. An attacker-controlled application can trigger this condition to cause unexpected system termination or kernel-level instability. The vulnerability is addressed by improving how the system handles memory allocation and deallocation. The exploit requires a malicious app to be present on the local system. Patches are available in iOS/iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, and watchOS 26.6.
Affected products
- Apple iOS and iPadOS Before 26.6
- Apple macOS Sequoia Before 15.7.8
- Apple macOS Sonoma Before 14.8.8
- Apple macOS Tahoe Before 26.6
- Apple tvOS Before 26.6
- Apple visionOS Before 26.6
- Apple watchOS Before 26.6
Timeline
- 2026-07-27: advisory
- 2026-07-27: disclosed
- 2026-07-27: patched