Buffer Overflow Vulnerability in Apple Products
CVE-2026-43661

7.5HIGH

Key Information:

Vendor

Apple

Vendor
CVE Published:
11 May 2026

What is CVE-2026-43661?

A buffer overflow vulnerability exists in various Apple operating systems, including iOS, iPadOS, macOS, tvOS, and watchOS. This issue arises from improper memory handling when processing a specially crafted image, which can potentially lead to memory corruption. Apple has addressed this vulnerability in the latest versions of its operating systems, including iOS 26.5, iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, and watchOS 26.5, ensuring enhanced security and stability.

Affected Version(s)

iOS and iPadOS 0 < 26.5

macOS 0 < 26.5

tvOS 0 < 26.5

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.