HIGHCVE-2026-20616Published Modified CNA apple
CVE-2026-20616: An out-of-bounds write issue was addressed with improved bounds checking
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. Processing a maliciously crafted USD file may lead to unexpected app termination.
Metrics
- CVSS v3.1
- 8.8
- Severity
- HIGH
- Fixed in
- 14.8.4
- Affected Products
- 3
Fix available
14.8.418.7.526.3
Affected packages
- Apple / iOS and iPadOS< 18.7.5 (from 0)
- Apple / macOS< 14.8.4 (from 0) · < 26.3 (from 0)
- Apple / visionOS< 26.3 (from 0)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H