By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Apple’s first iOS 26 security update fixes memory corruption flaw | Computer Weekly
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Apple’s first iOS 26 security update fixes memory corruption flaw | Computer Weekly
News

Apple’s first iOS 26 security update fixes memory corruption flaw | Computer Weekly

News Room
Last updated: 2025/09/30 at 12:35 PM
News Room Published 30 September 2025
Share
SHARE

Apple has pushed the first security update for its latest iPhone operating system, iOS 26, fixing a single, medium-severity vulnerability, assigned designation CVE-2025-43400, affecting Apple FontParser, a component in Apple operating systems that enables font processing.

“FontParser is the system that interprets font files, so characters can be interpreted across applications, documents and the web,” said Sylvain Cortes, vice-president of strategy at Hackuity, a security exposure management specialist. “As these files are often loaded automatically from documents, emails or websites, vulnerabilities here are high risk,” he explained.

CVE-2025-43400 is an out-of-bounds write issue which is exploited when a vulnerable device processes a maliciously crafted font hidden in an otherwise seemingly benign piece of content. Affected devices may experience unexpected behaviours such as sudden app termination or process memory corruption.

While app crashes are more often annoying than risky, process memory corruption is particularly dangerous as, given the right circumstances, it can form an element of an attack chain by leading to behaviour that can enable an attacker to gain unauthorised system access, exfiltrate data, or even remote code execution (RCE) further down the line.

According to Johannes Ullrich of the SANS Technology Institute, it is unclear if CVE-2025-43400 is exploitable for RCE, however, there remains a chance that successful exploitation of CVE-2025-43400 may result in ransomware attacks.

In a typically bare-bones announcement – Apple does not offer much detail on vulnerabilities in its mobile products lest they be exploited to target its vast user base – the supplier gave no indication as to whether or not CVE-2025-43400 is being exploited in the wild.

Historically, many security vulnerabilities uncovered in Apple’s mobile operating system have had significant impacts, with many being weaponised in targeted espionage and surveillance activities by spyware-makers and unsavoury governments.

“Although no active exploitation has been observed in the wild, users and enterprises should immediately apply the latest updates across all Apple devices to minimise exposure to attacks,” said Cortes.

Adam Boynton, senior security strategy manager for EMEIA at Apple device management specialist Jamf, echoed this sentiment and urged security managers not to be lulled into a false sense of complacency.

“Because the issue has the potential to cause service disruptions or undermine system stability, we strongly recommend updating to iOS 26.0.1 at your earliest convenience,” he said. “Organisations should ensure fleet devices are kept current, enforce compliance, and monitor for OS update roll-out status.” 

The update takes iOS 26 to version 26.0.1 and, as usual, users whose devices have not automatically applied it can find it by navigating to their device Settings, followed by General, Software Update, and Download and Install.

CVE-2025-43400 is also fixed in iOS 18.7.1, iPadOS 26.0.1 and 18.7.1, macOS Sequoia 15.7.1, macOS Sonoma 14.8.1, macOS Tahoe 26.01.1, and visionOS 26.0.1.

Benign bugs

Apple dropped iOS 26 on 15 September 2025, and besides the security fix, the new update also addresses some rather more benign, albeit frustrating bugs, including issues with Bluetooth, 5G and Wi-Fi connectivity on some models, and problems with app icon displays and device cameras.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article The Trump phone is late
Next Article Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Phantom Taurus: New China-Linked Hacker Group Hits Governments With Stealth Malware
Computing
Centralization of digital certificates in a cloud managed: the strategy that every company must know
Mobile
13 Essential iPad Apps Everyone Should Have Installed – BGR
News
The Apple Watch Series 10 Is $170 Off
Gadget

You Might also Like

News

13 Essential iPad Apps Everyone Should Have Installed – BGR

21 Min Read
News

Private AI moves data in-house, not next door – News

7 Min Read
News

'Help with mortgage' Google searches reach levels unseen since 2009

4 Min Read

Scientists find ancient life-size animal rock carvings in the Saudi Arabian desert

3 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?