CVE-2026-65346
Received Received - Intake

Integer Overflow in iOS Leading to Arbitrary Code Execution

Vulnerability report for CVE-2026-65346, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-17

Last updated on: 2026-08-17

Assigner: Apple Inc.

Description

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing an image may lead to arbitrary code execution.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-17
Last Modified
2026-08-17
Generated
2026-08-18
AI Q&A
2026-08-18
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 3 associated CPEs
Vendor Product Version / Range
apple ios 26.6.1
apple ipad_os 26.6.1
apple macos_tahoe 26.6.2

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is an integer overflow issue that occurs due to insufficient input validation. When processing an image, the flaw may allow arbitrary code execution on affected systems.

Detection Guidance

This vulnerability is specific to Apple operating systems and relates to image processing. Detection would require checking system and application logs for crashes or unusual behavior during image processing tasks. No direct commands are provided in the context to detect this issue.

Impact Analysis

The vulnerability could allow attackers to execute arbitrary code on your device by tricking you into processing a specially crafted image. This may lead to unauthorized access, data theft, or system compromise.

Compliance Impact

The provided CVE data does not specify any direct impact on compliance with standards like GDPR or HIPAA. The vulnerability involves an integer overflow leading to arbitrary code execution, but no details are given about data exposure or regulatory implications.

Mitigation Strategies

Update affected systems to the latest versions: iOS 26.6.1, iPadOS 26.6.1, or macOS Tahoe 26.6.2. Disable image processing features if updates are not immediately possible.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-65346. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart