Junglewise Threat Intelligence

CVE-2026-64700: Apple multiple operating systems use after free memory management issue

CVE-2026-64700 · Severity: info · CVSS 5.5 · Published 2026-07-27

Technologies: Apple Tvos, Apple macOS, Apple watchOS, Apple Visionos, Apple iPadOS. Vendors: Apple.

Executive brief

A memory management vulnerability exists in various Apple operating systems, including iOS, macOS, and watchOS. A malicious application installed on a device could exploit this flaw to cause the system to crash or terminate unexpectedly. This could lead to data loss or a temporary disruption of service for the user.

Technical details

A use-after-free vulnerability was identified in multiple Apple operating systems, including iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. The issue stems from improper memory management, which can be triggered by a local application. An attacker could exploit this to cause a denial-of-service condition (unexpected system termination). Apple has addressed the issue by improving memory management in the latest software updates. Fixes are available in iOS 26.6, iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, and watchOS 26.6.

Affected products

  • Apple iOS and iPadOS < 26.6
  • Apple macOS Sequoia < 15.7.8
  • Apple macOS Sonoma < 14.8.8
  • Apple macOS Tahoe < 26.6
  • Apple tvOS < 26.6
  • Apple visionOS < 26.6
  • Apple watchOS < 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: patched

References

Related threats