Skip to content
AppleCVE-2026-43738

Apple iOS and iPadOS: out-of-bounds read

Medium5.5CVE-2026-43738 · Published Jul 27, 2026 · updated Sep 14, 2026

The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted asset catalog may result in disclosure of process memory.

Apple advisory

Affected versions

PackageAffectedFixed in
iOS and iPadOS
Product
< 18.7.1018.7.10
< 2727
macOS
Product
< 14.8.814.8.8
< 15.7.815.7.8
< 2727
Details and references

More Apple advisories

All Apple
Advisory
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: buffer overflow
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: integer overflow
Critical9.8Jul 27
A memory initialization issue was addressed with improved memory handling
Critical9.8Jul 27

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.