CVE-2026-64736
massOut-of-Bounds Kernel Memory Access in Apple iOS, macOS, watchOS, and tvOS
CVE-2026-64736 is an out-of-bounds read/write flaw (CWE-125/CWE-787) in Apple's kernel, fixed by improved bounds checking. It is triggered locally by an app already running on the device, which may be able to read kernel memory or corrupt it, causing unexpected system termination or a device crash. The CVSS 3.1 score is 7.1 (high) with a local attack vector, low privileges required, and no user interaction, meaning any malicious or compromised app on an unpatched device is a potential vector. All users on versions prior to the fixes across iOS, iPadOS, macOS Sequoia and Tahoe, tvOS, visionOS, and watchOS are affected. No public proof of concept is known, the flaw is not listed in CISA's KEV catalog, and no in-the-wild exploitation has been reported.
What to do: Patch all Apple devices to iOS/iPadOS 26.6.1, macOS Sequoia 15.8, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, or watchOS 27 as soon as possible, prioritizing managed enterprise fleets via MDM. Because exploitation requires a local app, review and restrict sideloaded, untrusted, or out-of-date third-party apps, and audit recently installed enterprise apps for anomalous crash or kernel-panic behavior.
| Apple iOS | versions prior to iOS 26.6.1 |
| Apple iPadOS | versions prior to iPadOS 26.6.1 |
| Apple macOS Sequoia | versions prior to macOS Sequoia 15.8 |
| Apple macOS Tahoe | versions prior to macOS Tahoe 26.6.2 |
| Apple tvOS | versions prior to tvOS 27 |
| Apple visionOS | versions prior to visionOS 27 |
| Apple watchOS | versions prior to watchOS 27 |
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Sequoia 15.8, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination or corrupt kernel memory.
- Vendors
- apple
- Products
- ipados, iphone os, macos, tvos, visionos, watchos
- Weakness
- CWE-125, CWE-787
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.