
②WebKit以外の残り8件で怖いのはこの2つ ・ImageIO(CVE-2026-65346) 画像処理フレームワーク。画像を処理するだけで任意のコードが実行される恐れ。届いた1枚の画像が入口になる。 ・Telephony(CVE-2026-65329) IPSec認証を回避され、ネットワーク通信を傍受される可能性。対象はiPhone 11以降。
Post summary
The post highlights two newly disclosed Apple CVEs: CVE‑2026‑65346 enables arbitrary code execution via ImageIO, and CVE‑2026‑65329 may allow IPSec authentication bypass and traffic sniffing on iPhone 11+ devices.

