CVE-2026-84561
A double free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, ma
CVSS
9.8
Crítico
EPSS
0.7%
p50
KEV
—
Exploit Today
15
0-100
Publicado: 14 sept 2026 · Última mod.: 16 sept 2026 · CWE-415
0.2%EPSS · 30 días0.7%
2026-09-152026-09-17
A double free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination or corrupt kernel memory.
- support.apple.comhttps://support.apple.com/en-us/149034
- support.apple.comhttps://support.apple.com/en-us/149035
- support.apple.comhttps://support.apple.com/en-us/149036
- support.apple.comhttps://support.apple.com/en-us/149037
- support.apple.comhttps://support.apple.com/en-us/149038
- support.apple.comhttps://support.apple.com/en-us/149041
- support.apple.comhttps://support.apple.com/en-us/149042
- support.apple.comhttps://support.apple.com/en-us/149043
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-201358.6 ALT38.8%
——12A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a crafted TLS 1.3 packet to an affected system through a TLS 1.3-enabled listening socket. A successful exploit could allow the attacker to cause the LINA process to crash, which would cause the device to reload. The reload can happen before or after authentication of the connection.Note: TLS 1.3 connections include both data traffic and user-management traffic.1dCVE-2026-845585.5 MED2.1%
——1A double free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27. An app may be able to cause unexpected system termination.7hCVE-2026-859218.2 ALT18.1%
——5Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.1dCVE-2026-237904.2 MED0.6%
——0An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. A double-free vulnerability in the Samsung Exynos DPU driver (due to improper pointer management during DMA buffer reallocation) leads to kernel memory corruption and a potential use-after-free.3dCVE-2026-237897.8 ALT1.4%
——0An issue was discovered in MFC in Samsung Mobile Processor and Wearable Processor Exynos 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 2600, 1680, W920, W930, and W1000. A double-free vulnerability in the Exynos MFC encoder driver (due to improper cleanup of dma_buf references during error handling) leads to kernel memory corruption and potential arbitrary code execution.1dCVE-2026-578427.0 ALT0.8%
——0NetBSD contains a use-after-free and double-free vulnerability in msg_recv_copyin() within the COMPAT_NETBSD32 compatibility layer due to a missing return statement before the cleanup label on the success path. Any local user able to execute a 32-bit binary on a 64-bit NetBSD system can trigger a kernel panic or memory corruption by calling recvmsg() with msg_iovlen between 9 and IOV_MAX, causing the kernel to access a freed iovec buffer and subsequently free the same allocation a second time.6d