CVE-2026-86870
בינונית 6.5
תיאור (מקור, אנגלית)
A heap buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27, watchOS 27. Processing a maliciously crafted file may lead to unexpected app termination.
מדדים
- CVSS 3.1
-
6.5 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-28/9/2026
- CWE
- CWE-122
מוצרים מושפעים
apple: ipados; apple: iphone os; apple: macos; apple: visionos; apple: watchos
קישורים
- https://support.apple.com/en-us/149034 Vendor Advisory
- https://support.apple.com/en-us/149035 Vendor Advisory
- https://support.apple.com/en-us/149037 Vendor Advisory
- https://support.apple.com/en-us/149038 Vendor Advisory
- https://support.apple.com/en-us/149041 Vendor Advisory