Description
A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. Extracting a maliciously crafted archive may allow an attacker to write arbitrary files.
Published:
2026-09-14
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 14 Sep 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. Extracting a maliciously crafted archive may allow an attacker to write arbitrary files. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-09-14T20:51:54.673Z
Reserved: 2026-09-01T21:13:17.750Z
Link: CVE-2026-84534
No data.
Status : Received
Published: 2026-09-14T21:17:29.850
Modified: 2026-09-14T21:17:29.850
Link: CVE-2026-84534
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.