Junglewise Threat Intelligence

CVE-2026-64768: Apple Multiple Operating Systems out-of-bounds read

CVE-2026-64768 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Sequoia, Apple Tvos, Apple Visionos, Apple iPadOS. Vendors: Apple.

Executive brief

A security vulnerability affects various Apple operating systems, including iOS, macOS, and tvOS. A remote attacker could exploit this flaw to cause applications to crash unexpectedly, potentially disrupting user operations or service availability. Apple has released software updates to address this issue across all affected platforms.

Technical details

An out-of-bounds read vulnerability exists in Apple's iOS, iPadOS, macOS, tvOS, and visionOS. The flaw is rooted in insufficient input validation, which can be triggered by a remote attacker. Successful exploitation leads to a denial-of-service condition through unexpected application termination. Apple addressed the issue by improving input validation in iOS 26.6, iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, and visionOS 26.6.

Affected products

  • Apple iOS and iPadOS before 26.6
  • Apple macOS Sequoia before 15.7.8
  • Apple macOS Sonoma before 14.8.8
  • Apple macOS Tahoe before 26.6
  • Apple tvOS before 26.6
  • Apple visionOS before 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: advisory
  • 2026-07-27: patched

References

Related threats