Description The issue was addressed with improved memory handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An app may be able to cause unexpected system termination.
CVSS vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Exploitability: 1.8 | Impact: 3.6 Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High
Affected Packages11 packages Show 6 more packages
🔴 Vulnerability Details2 GHSA GHSA-4m8q-p6h8-x2wj: The issue was addressed with improved memory handling ↗ 2026-02-12 ▶ CVEList CVE-2026-20654: The issue was addressed with improved memory handling ↗ 2026-02-11 ▶
📋 Vendor Advisories5 Apple CVE-2026-20654: visionOS 26.3 ↗ 2026-02-11 ▶ Apple CVE-2026-20654: watchOS 26.3 ↗ 2026-02-11 ▶ Apple CVE-2026-20654: macOS Tahoe 26.3 ↗ 2026-02-11 ▶ Apple CVE-2026-20654: iOS 26.3 and iPadOS 26.3 ↗ 2026-02-11 ▶ Apple CVE-2026-20654: tvOS 26.3 ↗ 2026-02-11 ▶
🕵️ Threat Intelligence1 Wiz CVE-2026-20654 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶