In-the-wild iOS bug CVE-2026-86950 traced to compiler optimization causing OOB write

jedisct1 · x · 2026-10-01

Apple's iOS 26.7.1 fixed CoreGraphics bug CVE-2026-86950, which it said "may have been exploited in an extremely sophisticated attack against specific targeted individuals" — reported by Meta Product Security with a possible WhatsApp zero-click path. Calif researchers reverse-engineered the patch: a compiler optimization introduced a unit conversion error, so CoreGraphics undersizes an allocation when rendering a specially crafted font in a PDF, leading to an out-of-bounds write. A PoC works on both macOS and iOS.

Original post →

More from Safety

Safety channel →