Out-of-Bounds Read in Apple Products
CVE-2026-43817

5.5MEDIUM

Key Information:

Vendor

Apple

Vendor
CVE Published:
27 July 2026

What is CVE-2026-43817?

An out-of-bounds read vulnerability exists in various Apple operating systems, potentially allowing malicious apps to read parts of memory that they are not authorized to access. This could lead to unexpected behavior, including system crashes. Apple has issued patches to enhance bounds checking and mitigate the risks associated with this vulnerability. Users are advised to update to the latest versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS to safeguard their devices.

Affected Version(s)

iOS and iPadOS 0 < 26.6

macOS 0 < 26.6

tvOS 0 < 26.6

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.