Memory Corruption in Apple iOS and macOS Products
CVE-2026-43673

7.8HIGH

Key Information:

Vendor

Apple

Vendor
CVE Published:
27 July 2026

What is CVE-2026-43673?

A memory corruption vulnerability has been identified in iOS and macOS products, stemming from improper handling of maliciously crafted audio files. Successful exploitation could allow an attacker to potentially corrupt process memory, leading to unexpected behavior or application crashes. Users should ensure their devices are updated to the latest versions, including iOS 26.6 and macOS updates, to mitigate potential risks.

Affected Version(s)

iOS and iPadOS 0 < 18.7.10

iOS and iPadOS 0 < 26.6

macOS 0 < 14.8.8

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.