Executive brief
A memory handling vulnerability in Apple operating systems could allow a malicious application to crash the device or corrupt sensitive system memory. This affects iPhones, iPads, Macs, and Vision Pro headsets. If exploited, this could lead to system instability or potentially allow an app to gain unauthorized access to protected system functions.
Technical details
A memory handling vulnerability exists in the kernel of multiple Apple operating systems, including iOS, macOS, and visionOS. The flaw allows a locally installed application to trigger unexpected system termination or corrupt kernel memory due to improper memory management. The issue was addressed by improving memory handling logic within the affected components. Successful exploitation could lead to a denial-of-service (system crash) or potentially facilitate further privilege escalation by compromising the integrity of the kernel. Patches are available in iOS/iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, and visionOS 26.6.
Affected products
- Apple iOS and iPadOS before 26.6
- Apple macOS Sequoia before 15.7.8
- Apple macOS Tahoe before 26.6
- Apple visionOS before 26.6
Timeline
- 2026-07-27: advisory
- 2026-07-27: patched