CVE-2026-43794

Overview

Advisory: Apple Security Advisory

Impact:

Description: Processing maliciously crafted web content may lead to memory corruption

Researchers: Dung Do (@_piers2) of Calif.io

Attribute Value
CVE CVE-2026-43794
Bugzilla 317317
Component WebKit
Bug Class LogicError
Severity medium
Commit 4a92fe2ccba1be5f…
Advisory Apple Advisory

Root Cause Analysis

A memory corruption issue was addressed with improved memory handling.

Files Changed

Source Files

  • Source/WebGPU/WebGPU/Queue.mm
  • Source/WebGPU/WebGPU/Queue.swift
  • Source/WebGPU/WebGPU/RenderPipeline.mm
  • Source/WebGPU/WebGPU/WebGPUExt.h
  • Source/WebKit/GPUProcess/graphics/WebGPU/RemoteQueue.cpp