2026年9月29日星期二

Apple Products Remote Code Execution Vulnerability

Apple Products Remote Code Execution Vulnerability

Release Date: 29 Sep 2026

A vulnerability has been identified in Apple Products. A remote attacker could exploit this vulnerability to trigger remote code execution on the targeted system.

 

Note:

CVE-2026-86950 is being exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.  Processing a maliciously crafted file may lead to arbitrary code execution. Hence, the risk level is rated as High Risk.


Impact

  • Remote Code Execution

System / Technologies affected

  • Versions prior to iOS 26.7.1 and iPadOS 26.7.1
  • Versions prior to macOS Tahoe 26.7.1
  • Versions prior to macOS Sequoia 15.8.1

Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fixes issued by the vendor:

 

  • iOS 26.7.1 and iPadOS 26.7.1
  • macOS Tahoe 26.7.1
  • macOS Sequoia 15.8.1

Vulnerability Identifier


Source


Related Link

 


沒有留言:

發佈留言

Apache Tomcat 多個漏洞

Apache Tomcat 多個漏洞 發佈日期 : 2026 年 09 月 29 日 於 Apache Tomcat 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制及資料篡改。 影響 阻斷服務 篡改 繞過...