
Apple recently patched the missing piece in the userland part of the Dec'25 full-chain exploit. CVE-2026-20700: dyld memory corruption to PAC bypass This bug completes the chain of CVE-2026-43529 (jsc UAF RCE, PoC public) and CVE-2026-14174 (Angle OOB EoP, no working PoC yet). Patched in iOS 26.3
Post summary
Apple has patched CVE-2026-20700— a dyld memory corruption that enabled PAC bypass— as part of completing the Dec'25 full-chain exploit, with the fix applied in iOS 26.3.


