CVE-2026-64755: Use After Free
Accessibility. This issue was addressed through improved state management.
Other sources
Accounts Framework. This issue was addressed with improved data protection.
— Apple
AirDrop. A reachable assertion was addressed with improved input validation.
— Apple
An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6. An app may be able to access sensitive user data.
— MITRE
APFS. The issue was addressed with improved memory handling.
— Apple
App Store. This issue was addressed with improved checks.
— Apple
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.6 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 18.7.10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in iOS 18.7.10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in iPadOS 18.7.10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in iOS 26.6 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in iPadOS 26.6 - Configuration
Use HTTPS for any network transmissions that may include sensitive information (material: 'addressed by using HTTPS when sending information over the network').
Network transmission (unspecified Apple component) Use HTTPS when sending information over the network = HTTPS
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2026-64732
- CVE-2026-64733
- CVE-2026-43801
- CVE-2026-28928
- CVE-2026-43776
- CVE-2026-64725
- CVE-2026-43730
- CVE-2026-64747
- CVE-2026-64707
- CVE-2026-43811
- CVE-2026-43813
- CVE-2026-64746
- CVE-2026-64734
- CVE-2026-43797
- CVE-2026-43673
- CVE-2026-43744
- CVE-2026-43803
- CVE-2026-43711
- CVE-2026-3784
- CVE-2026-3783
- CVE-2026-43753
- CVE-2026-43714
- CVE-2026-64742
- CVE-2026-64740
- CVE-2026-43796
- CVE-2026-64692
- CVE-2026-43780
- CVE-2026-43818
- CVE-2026-64716
- CVE-2026-64758
- CVE-2026-64754
- CVE-2026-64693
- CVE-2026-43805
- CVE-2026-64749
- CVE-2026-43778
- CVE-2026-64709
- CVE-2026-64735
- CVE-2026-43739
- CVE-2026-43816
- CVE-2026-43822
- CVE-2026-64729
- CVE-2026-43814
- CVE-2026-64700
- CVE-2026-43799
- CVE-2026-28931
- CVE-2026-43817
- CVE-2026-43769
- CVE-2026-43810
- CVE-2026-64775
- CVE-2026-64720
- CVE-2026-64751
- CVE-2026-64721
- CVE-2026-4424
- CVE-2026-28973
- CVE-2026-64739
- CVE-2026-64743
- CVE-2026-64724
- CVE-2026-43723
- CVE-2026-43733
- CVE-2026-43729
- CVE-2026-64772
- CVE-2026-64771
- CVE-2026-64722
- CVE-2026-64774
- CVE-2026-64770
- CVE-2026-64769
- CVE-2026-64768
- CVE-2026-64711
- CVE-2026-43812
- CVE-2026-64741
- CVE-2026-64766
- CVE-2026-64765
- CVE-2026-64764
- CVE-2026-64763
- CVE-2026-43800
- CVE-2026-43740
- CVE-2026-64713
- CVE-2026-64730
- CVE-2026-64728
- CVE-2026-64783
- CVE-2026-64757
- CVE-2026-43804
- CVE-2026-43821
- CVE-2026-64718
- CVE-2026-64719
- CVE-2026-64726
- CVE-2026-64755
Frequently Asked Questions
What is the severity of CVE-2026-64755?
The severity of CVE-2026-64755 is classified as medium with a CVSS score of 5.5.
How do I fix CVE-2026-64755?
To fix CVE-2026-64755, update to iOS 26.6 or iPadOS 26.6.
What types of issues does CVE-2026-64755 address?
CVE-2026-64755 addresses issues related to accessibility, authorization, and improved state management.
What kind of vulnerabilities are associated with CVE-2026-64755?
CVE-2026-64755 is associated with vulnerabilities including use after free, race condition, and information leakage.
What components are affected by CVE-2026-64755?
CVE-2026-64755 affects Apple iOS and Apple iPadOS software.