BlackTreeCVE IntelligenceOfficial source evidencesupport.apple.comVersioned article
Official source article · support.apple.com
About the security content of iOS 18.7.9 and iPadOS 18.7.9 - Apple Support
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publishersupport.apple.com
Article IDNo stable ID in source URL
Verified snapshot26 Sept 2026, 20:28 UTC
Linked CVEs49
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-28969A use after free issue was addressed with improved memory management
- CVE-2026-43670A Content Security Policy bypass was addressed with improved enforcement in AudioWorklet contexts
- CVE-2026-65367A null pointer dereference was addressed with improved input validation
- CVE-2026-28995A logic issue was addressed with improved restrictions
- CVE-2026-43653An attacker on the local network may be able to cause a denial-of-service
- CVE-2026-28983A remote attacker may be able to cause a denial of service
- CVE-2026-28936The issue was addressed with improved checks
- CVE-2026-28847The issue was addressed with improved memory handling
- CVE-2026-28903The issue was addressed with improved memory handling
- CVE-2026-28904The issue was addressed with improved memory handling
- CVE-2026-28953The issue was addressed with improved memory handling
- CVE-2026-28955The issue was addressed with improved memory handling
- CVE-2026-28940The issue was addressed with improved memory handling
- CVE-2026-43654The issue was addressed with improved memory handling
- CVE-2026-28917The issue was addressed with improved input validation
- CVE-2026-28907The issue was addressed with improved input validation
- CVE-2026-43660A validation issue was addressed with improved logic
- CVE-2026-28962This issue was addressed with improved access restrictions
- CVE-2026-28943A logging issue was addressed with improved data redaction
- CVE-2026-28920An information leakage was addressed with additional validation
- CVE-2026-28977The issue was addressed with improved bounds checks
- CVE-2026-28873This issue was addressed with additional entitlement checks
- CVE-2026-28819An out-of-bounds write issue was addressed with improved bounds checking
- CVE-2026-28951An authorization issue was addressed with improved state management
- CVE-2026-28941The issue was addressed with improved checks
- CVE-2026-28957An issue with app access to camera metadata was addressed with improved logic
- CVE-2026-28959A buffer overflow was addressed with improved bounds checking
- CVE-2026-28872A remote attacker may be able to cause a denial-of-service
- CVE-2026-39869The issue was addressed with improved memory handling
- CVE-2026-28993This issue was addressed by adding an additional prompt for user consent
- CVE-2026-43668A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
- CVE-2026-28906An attacker may be able to track users through their IP address
- CVE-2026-28992A memory corruption vulnerability was addressed with improved locking
- CVE-2026-28994An attacker in a privileged network position may be able to perform denial-of-service attack using crafted Wi-Fi packets
- CVE-2026-28952An integer overflow was addressed with improved input validation
- CVE-2026-28972An out-of-bounds write issue was addressed with improved input validation
- CVE-2026-43656An out-of-bounds write issue was addressed with improved input validation
- CVE-2026-28846A buffer overflow was addressed with improved bounds checking
- CVE-2026-43666An attacker on the local network may be able to cause a denial-of-service
- CVE-2026-28897A buffer overflow was addressed with improved input validation
- CVE-2026-28987A logging issue was addressed with improved data redaction
- CVE-2026-28929Replying to an email could display remote images in Mail in Lockdown Mode
- CVE-2026-28986A race condition was addressed with additional validation
- CVE-2026-28954A file quarantine bypass was addressed with additional checks
- CVE-2026-43659A race condition was addressed with additional validation
- CVE-2026-28877An authorization issue was addressed with improved state management
- CVE-2026-28882This issue was addressed with improved checks
- CVE-2026-28870An information leakage was addressed with additional validation
- CVE-2026-28894A remote attacker may be able to cause a denial-of-service
Source and provenance
Original title: About the security content of iOS 18.7.9 and iPadOS 18.7.9 - Apple Support. Captured 26 Sept 2026, 20:28 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗