Executive brief
Apple's Accelerate Framework contains an out-of-bounds write vulnerability triggered when processing maliciously crafted 3D models, potentially causing memory corruption. An attacker could exploit this flaw by sharing a specially crafted 3D model file that, when processed by affected Apple devices, could crash applications or potentially execute arbitrary code. The vulnerability affects millions of iPhone, iPad, Mac, Apple TV, and smartwatch users worldwide.
Technical details
This is an out-of-bounds write vulnerability in Apple's Accelerate Framework, a low-level numerical computing library used for image and 3D model processing. The root cause is improper bounds checking when handling maliciously crafted 3D model data. The attack vector requires user interaction—a user must open or process a specially crafted 3D model file—but requires no authentication or special privileges. Successful exploitation leads to memory corruption, which can result in application crashes (denial of service) or potentially arbitrary code execution depending on memory layout. The vulnerability is patched in iOS 27, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27, all released on September 14, 2026.
Affected products
- Apple iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27
- Apple iPadOS 26.7, 27
- Apple macOS Golden Gate 27
- Apple macOS Sequoia 15.8
- Apple macOS Tahoe 26.7
- Apple tvOS 27
- Apple visionOS 27
- Apple watchOS 27
Timeline
- 2026-09-14: disclosed: CVE-2026-84611 disclosed; security patches released
- 2026-09-14: patched: Patched in iOS 27, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27