BlackTreeCVE IntelligenceOfficial source evidencesupport.apple.comVersioned article
Official source article · support.apple.com
About the security content of visionOS 26.5 - Apple Support
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publishersupport.apple.com
Article IDNo stable ID in source URL
Verified snapshot29 Sept 2026, 02:41 UTC
Linked CVEs50
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-28969A use after free issue was addressed with improved memory management
- CVE-2026-28984The issue was addressed with improved memory handling
- CVE-2026-39877A memory corruption issue was addressed with improved memory handling
- CVE-2026-43667An attacker in a privileged network position may be able to cause a denial-of-service
- CVE-2026-28995A logic issue was addressed with improved restrictions
- CVE-2026-43658The issue was addressed with improved memory handling
- CVE-2026-28947A use-after-free issue was addressed with improved memory management
- CVE-2026-28990The issue was addressed with improved memory handling
- CVE-2026-28958This issue was addressed with improved data protection
- CVE-2026-28996A race condition was addressed with additional validation
- CVE-2026-28983A remote attacker may be able to cause a denial of service
- CVE-2026-28936The issue was addressed with improved checks
- CVE-2026-1837libjxl: Out-of-bounds write in grayscale color transformation when using LCMS2
- CVE-2026-28847The issue was addressed with improved memory handling
- CVE-2026-28883A use-after-free issue was addressed with improved memory management
- CVE-2026-28901The issue was addressed with improved memory handling
- CVE-2026-28902The issue was addressed with improved memory handling
- CVE-2026-28903The issue was addressed with improved memory handling
- CVE-2026-28904The issue was addressed with improved memory handling
- CVE-2026-28905The issue was addressed with improved memory handling
- CVE-2026-28942A use-after-free issue was addressed with improved memory management
- CVE-2026-28953The issue was addressed with improved memory handling
- CVE-2026-28955The issue was addressed with improved memory handling
- CVE-2026-28940The issue was addressed with improved memory handling
- CVE-2026-43654The issue was addressed with improved memory handling
- CVE-2026-28917The issue was addressed with improved input validation
- CVE-2026-28907The issue was addressed with improved input validation
- CVE-2026-28971The issue was addressed with improved UI handling
- CVE-2026-28944The issue was addressed with improved memory handling
- CVE-2026-43660A validation issue was addressed with improved logic
- CVE-2026-28962This issue was addressed with improved access restrictions
- CVE-2026-28920An information leakage was addressed with additional validation
- CVE-2026-28977The issue was addressed with improved bounds checks
- CVE-2026-28988An app may be able to bypass certain Privacy preferences
- CVE-2026-28957An issue with app access to camera metadata was addressed with improved logic
- CVE-2026-28959A buffer overflow was addressed with improved bounds checking
- CVE-2026-28918An out-of-bounds access issue was addressed with improved bounds checking
- CVE-2026-39869The issue was addressed with improved memory handling
- CVE-2026-28993This issue was addressed by adding an additional prompt for user consent
- CVE-2026-43668A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
- CVE-2026-28906An attacker may be able to track users through their IP address
- CVE-2026-28992A memory corruption vulnerability was addressed with improved locking
- CVE-2026-28956A memory corruption issue was addressed with improved input validation
- CVE-2026-28991An out-of-bounds read was addressed with improved bounds checking
- CVE-2026-28972An out-of-bounds write issue was addressed with improved input validation
- CVE-2026-28846A buffer overflow was addressed with improved bounds checking
- CVE-2026-43666An attacker on the local network may be able to cause a denial-of-service
- CVE-2026-28897A buffer overflow was addressed with improved input validation
- CVE-2026-28964An inconsistent user interface issue was addressed with improved state management
- CVE-2026-28974This issue was addressed with improved checks to prevent unauthorized actions
Source and provenance
Original title: About the security content of visionOS 26.5 - Apple Support. Captured 29 Sept 2026, 02:41 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗