CVE-2026-20657 PUBLISHED CVSS 6.5 MEDIUM

The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5. Parsing a maliciously crafted file may lead to an unexpected app termination.

EPSS 0.02% · 5.0th percentile

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.02%
5.0th percentile

Affected Products

VendorProductVersions
AppleiOS and iPadOS0
appleiphone_os0
ApplemacOS0, 0
appleipados0
applemacos14.0, 15.0

Timeline

References

Open in Interactive Console →