Sceawere

Vulnerability Detail

CVE-2026-65349UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

Kernel Out-of-Bounds Read Vulnerability

Vulnerability Metadata

Severity
Medium
Score / CVSS
6.6
Creation Date
19h ago
Vendor
Apple
Product
iOS and iPadOS
Attack Type
An app may be able to cause unexpected system termination or read kernel memory
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H
Attack Complexity
LOW

Narrative and Response

Description

An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. An app may be able to cause unexpected system termination or read kernel memory.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "6.6",
  "pubDate": "2026-08-17T22:17:25.483Z",
  "pubdate": "2026-08-17T22:17:25.483Z",
  "executiveSummary": "An out-of-bounds read vulnerability has been identified within iOS, iPadOS, and macOS operating systems, specifically stemming from insufficient input validation mechanisms.\nThis security flaw allows a malicious or compromised application to trigger unexpected system termination, leading to a denial of service, or to execute read operations against sensitive kernel memory regions.\nThe vulnerability affects Apple devices running iOS 26.6.1, iPadOS 26.6.1, and macOS Tahoe 26.6.2, or earlier versions.\nThe risk implications are severe due to the potential disclosure of kernel memory contents, which could expose critical system state information or cryptographic secrets to an unprivileged attacker.\nTo exploit this vulnerability, an attacker must successfully execute an application locally on the target system.\nThe flaw was addressed and resolved by the vendor through the implementation of improved input validation checks to prevent out-of-bounds memory access conditions.",
  "technicalDetails": "The vulnerability is classified as an out-of-bounds read, caused by a lack of rigorous input validation prior to processing data within the affected system components.\nThe vulnerable component fails to properly verify the size and boundaries of input parameters supplied to underlying kernel or system routines, allowing read operations to occur past the allocated memory buffer boundaries.\nAn attacker leverages this vulnerability by supplying maliciously crafted inputs via a locally executed application.\nThe step-by-step attack flow begins with the deployment or execution of the untrusted application on the target device.\nThe application then invokes specific system interfaces or application programming interfaces with parameters designed to bypass initial checks.\nBecause the input validation logic is insufficient, the system accepts the out-of-bounds parameters and attempts to read memory located immediately adjacent to the intended buffer.\nThis unauthorized memory read operation can cause the system to fault, resulting in unexpected system termination and a denial of service condition.\nAlternatively, the read operation may successfully capture contents from sensitive kernel memory structures, returning that data to the calling application and leaking memory contents.\nAuthentication and privilege requirements are limited to the ability to execute an application locally, meaning unprivileged local processes can potentially trigger the flaw.\nNetwork exposure is not explicitly required for exploitation, as the vector relies on local application execution.\nThe post-exploitation impact includes potential information disclosure of kernel memory and system instability manifesting as crashes or kernel panics."
}
CVE-2026-65349: Kernel Out-of-Bounds Read Vulnerability (MEDIUM Severity, CVSS: 6.6) - Sceawere