← Back

CVE-2026-20616

nvd nist
Published: Feb 11, 2026Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. Processing a maliciously crafted USD file may lead to unexpected app termination.

Affected (5)

4 products
Ipados
Iphone Os
Macos
Visionos
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Before 18.7.5
Before 18.7.5
Apple
From 14.0 to 14.8.4
From 26.0 to 26.3
Before 26.3

References (5)

Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0

Timeline

No history available yet.