An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1. An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://support.apple.com/en-us/148282 |
|
History
Mon, 17 Aug 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | IPSec Authentication Bypass in iOS/iPadOS Enables Traffic Interception | |
| Weaknesses | CWE-287 |
Mon, 17 Aug 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple ios And Ipados |
|
| Vendors & Products |
Apple
Apple ios And Ipados |
Mon, 17 Aug 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1. An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-08-17T21:29:26.606Z
Reserved: 2026-07-22T00:45:02.635Z
Link: CVE-2026-65329
No data.
Status : Received
Published: 2026-08-17T22:17:23.830
Modified: 2026-08-17T22:17:23.830
Link: CVE-2026-65329
No data.
OpenCVE Enrichment
Updated: 2026-08-17T23:30:04Z
Weaknesses