Apple Model I/O Out-of-Bounds Access Vulnerability Allowing Memory Corruption
Vulnerability
A vulnerability in the Model I/O framework of Apple operating systems, including iOS, iPadOS, tvOS, visionOS, and macOS Sequoia, has been identified. This issue involves out-of-bounds access, which can be exploited by processing maliciously crafted media files. The vulnerability may lead to unexpected application termination or corruption of process memory. It affects several different versions and/or ranges.
Impact
Exploitation of this vulnerability can cause process memory corruption or lead to an unexpected application crash.
Remediation
This vulnerability has been fixed in iOS 26.1, iPadOS 26.1, tvOS 26.1, visionOS 26.1, and macOS Sequoia 15.7.2.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
