A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4. An attacker in a privileged network position may be able to cause a denial-of-service.
Metrics
Affected Vendors & Products
References
History
Tue, 12 May 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Denial‑of‑Service via Improper Input Validation in iOS/iPadOS |
Tue, 12 May 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Denial-of-Service Vulnerability in iOS and iPadOS Due to Improper Input Validation | |
| Weaknesses | CWE-20 |
Tue, 12 May 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 12 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-400 | |
| Metrics |
cvssV3_1
|
Mon, 11 May 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Denial-of-Service Vulnerability in iOS and iPadOS Due to Improper Input Validation | |
| First Time appeared |
Apple
Apple ios And Ipados |
|
| Weaknesses | CWE-20 | |
| Vendors & Products |
Apple
Apple ios And Ipados |
Mon, 11 May 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4. An attacker in a privileged network position may be able to cause a denial-of-service. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2026-05-11T20:08:25.332Z
Updated: 2026-05-12T17:25:04.049Z
Reserved: 2026-03-03T16:36:03.992Z
Link: CVE-2026-28967
Updated: 2026-05-12T17:24:59.640Z
Status : Undergoing Analysis
Published: 2026-05-11T21:18:57.600
Modified: 2026-05-12T18:16:49.117
Link: CVE-2026-28967
No data.