CVE-2026-43667

Summary

A reachable assertion was addressed with improved input validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, visionOS 26.5, watchOS 26.5. An attacker in a privileged network position may be able to cause a denial-of-service.

Affected Software

VendorProductVersion RangeStatus
AppleiOS and iPadOS0 < 18.7.10affected
AppleiOS and iPadOS0 < 26.5affected
ApplemacOS0 < 26.5affected
ApplevisionOS0 < 26.5affected
ApplewatchOS0 < 26.5affected

Weaknesses

  • An attacker in a privileged network position may be able to cause a denial-of-service

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References