CVE-2026-65367

Summary

A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5. An app may be able to cause unexpected system termination.

Affected Software

VendorProductVersion RangeStatus
AppleiOS and iPadOS0 < 18.7.9affected
AppleiOS and iPadOS0 < 26.5affected

Weaknesses

  • An app may be able to cause unexpected system termination

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References