CVE-2026-65405
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadO
CVSS
5.5
Medio
EPSS
—
KEV
—
Exploit Today
0
0-100
Publicado: 14 sept 2026 · Última mod.: 15 sept 2026 · CWE-457
Sin historial EPSS suficiente todavía.
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to determine kernel memory layout.
- support.apple.comhttps://support.apple.com/en-us/149034
- support.apple.comhttps://support.apple.com/en-us/149035
- support.apple.comhttps://support.apple.com/en-us/149036
- support.apple.comhttps://support.apple.com/en-us/149037
- support.apple.comhttps://support.apple.com/en-us/149038
- support.apple.comhttps://support.apple.com/en-us/149041
- support.apple.comhttps://support.apple.com/en-us/149042
- support.apple.comhttps://support.apple.com/en-us/149043
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-161418.1 ALT—
———OpenBMC's IPMI implementation, phosphor-net-ipmid, contains a logic flaw in which an unauthenticated client can force the RAKP Message 1 handler to return before it overwrites the authentication object's constructor defaults. The IPMI service then accepts a RAKP Message 3 whose HMAC is computed with the constant 20-byte 'userKey' initialized from the string '0penBmc' and an often-predictable 'bmcRandomNum'. Several downstream vendors implement phosphor-net-ipmid as their IPMI stack, such as NVIDIA and H3C.10hCVE-2026-920528.8 ALT—
———Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, and Thunderbird 156.5hCVE-2026-843916.5 MED14.4%
——4A use of uninitialized variable vulnerability in Fortinet FortiAnalyzer 7.6.3 through 7.6.6 may allow attacker to denial of service via <insert attack vector here>7dCVE-2026-846399.1 CRÍ25.1%
——8Triggering an error condition in certain MIME bodies would cause uninitialized memory to be used. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.12dCVE-2026-789359.6 CRÍ41.9%
——13Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)20dCVE-2026-769195.3 MED19.0%
——6ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service15d