CVE-2026-65329: Input Validation
An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1. An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic.
Other sources
Audio. A logic issue was addressed with improved checks.
— Apple
ImageIO. An integer overflow was addressed with improved input validation.
— Apple
ImageIO. The issue was addressed with improved checks.
— Apple
IOGPUFamily. The issue was addressed with improved memory handling.
— Apple
Kernel. A use after free issue was addressed with improved memory management.
— Apple
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.6.1 - Upgrade
Upgrade
iOS/iPadOSto a version that resolves this vulnerability.Fixed in 26.6.1
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2026-65339
- CVE-2026-65347
- CVE-2026-65346
- CVE-2026-64788
- CVE-2026-65343
- CVE-2026-65349
- CVE-2026-65330
- CVE-2026-65329
- CVE-2026-64784
- CVE-2026-43795
- CVE-2026-65338
- CVE-2026-65341
- CVE-2026-64782
- CVE-2026-64781
- CVE-2026-65351
- CVE-2026-65340
- CVE-2026-65337
- CVE-2026-65336
- CVE-2026-65335
- CVE-2026-65333
- CVE-2026-65332
- CVE-2026-65331
- CVE-2026-64715
- CVE-2026-64780
- CVE-2026-65334
- CVE-2026-43794
- CVE-2026-64787
- CVE-2026-64778
- CVE-2026-64779
Frequently Asked Questions
What is the severity of CVE-2026-65329?
CVE-2026-65329 is classified as a high severity vulnerability due to its potential to allow unauthorized access and execution of arbitrary code.
How do I fix CVE-2026-65329?
To fix CVE-2026-65329, users should update their Apple iOS and iPadOS devices to the latest version available from Apple.
What types of devices are affected by CVE-2026-65329?
CVE-2026-65329 affects devices running Apple iOS and Apple iPadOS.
What are the main vulnerabilities associated with CVE-2026-65329?
CVE-2026-65329 primarily involves input validation issues, integer overflow, and use after free scenarios.
When was CVE-2026-65329 published?
CVE-2026-65329 was published on August 17, 2026.