Junglewise Threat Intelligence

CVE-2026-64720: Apple Multiple Operating Systems race condition denial of service

CVE-2026-64720 · Severity: info · Published 2026-07-27

Technologies: Apple Tvos, Apple macOS, Apple watchOS, Apple iPadOS. Vendors: Apple.

Executive brief

A vulnerability in Apple's mobile and desktop operating systems could allow a malicious application to cause a sudden system crash or shutdown. This affects iPhones, iPads, Macs, Apple TVs, and Apple Watches. While it primarily impacts system stability and availability, it could disrupt business operations or user activity.

Technical details

A race condition exists in the state handling logic of multiple Apple operating systems. By exploiting this flaw, a locally installed application can trigger an unexpected system termination (denial of service). The issue was addressed by improving state handling within the kernel or system services. Affected platforms include iOS/iPadOS, macOS Tahoe, tvOS, and watchOS, all prior to version 26.6. An attacker must have the ability to run code on the target device to trigger the race condition.

Affected products

  • Apple iOS and iPadOS < 26.6
  • Apple macOS Tahoe < 26.6
  • Apple tvOS < 26.6
  • Apple watchOS < 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: patched

References

Related threats