AppleがiPhoneやiPadなど向け最新プラットフォーム「iOS 26.6.1」と「iPadOS 26.6.1」を提供開始!複数の脆弱性を修正


AppleがiPhoneなど向けiOS 26.6.1とiPadOS 26.6.1をリリース!

Appleは17日(現地時間)、同社が販売するスマートフォン(スマホ)「iPhone」シリーズ向けプラットフォーム「iOS」とタブレット「iPad」シリーズ向けプラットフォーム「iPadOS」の最新バージョン「iOS 26.6.1(23G83)」および「iPadOS 26.6.1(23G83)」を提供開始したとお知らせしています。変更点は脆弱性の修正となっており、セキュリティーアップデートについてはCVEに登録されているKernel関連の脆弱性「CVE-2026-65343」などの29個の脆弱性が修正されているということです。

対象機種はiOS 26.6.1では最新の「iPhone 17e」を含めたiPhone 11シリーズ以降やiPhone SE(第2世代)以降が対象、iPadOS 26.6.1ではiPad(第8世代)以降やiPad mini(第5世代)以降、iPad Air(第3世代)以降、12.9インチiPad Pro(第3世代)以降および11インチiPad Pro(第1世代)以降のiPad Proシリーズが対象で、各製品にて無料で更新可能です。なお、iOS 18の対象機種だったiPhone XSシリーズおよびiPhone XR、iPadOS 18の対象機種だったiPad(第7世代)はそれぞれ対象外となっています。

iPhone向けのiOSやiPad向けのiPadOSの最新メジャーバージョンとして先ごろよりiOS 26.0とiPadOS 26.0が提供開始されていましたが、これらに続けて新機能が追加されたiOS 26.1とiPadOS 26.1、iOS 26.2とiPadOS 26.2、iOS 26.3とiPadOS 26.3、iOS 26.4とiPadOS 26.4、iOS 26.5とiPadOS 26.5、iOS 26.6とiPadOS 26.6が提供されており、今回、iOS 26.6やiPadOS 26.6の不具合と脆弱性を修正したiOS 26.6.1とiPadOS 26.6.1がリリースされました。iOS 26.6.1およびiPadOS 26.6.1の対象機種は以下の通り。

<iOS 26対応製品>
・iPhone 17e
・iPhone 17
・iPhone 17 Pro
・iPhone 17 Pro Max
・iPhone Air
・iPhone 16e
・iPhone 16
・iPhone 16 Plus
・iPhone 16 Pro
・iPhone 16 Pro Max
・iPhone 15
・iPhone 15 Plus
・iPhone 15 Pro
・iPhone 15 Pro Max
・iPhone 14
・iPhone 14 Plus
・iPhone 14 Pro
・iPhone 14 Pro Max
・iPhone 13
・iPhone 13 mini
・iPhone 13 Pro
・iPhone 13 Pro Max
・iPhone 12
・iPhone 12 mini
・iPhone 12 Pro
・iPhone 12 Pro Max
・iPhone 11
・iPhone 11 Pro
・iPhone 11 Pro Max
・iPhone SE(第3世代)
・iPhone SE(第2世代)

<iPadOS 26対応製品>
・iPad(第8世代)
・iPad(第9世代)
・iPad(第10世代)
・iPad(A16)
・iPad mini(第5世代)
・iPad mini(第6世代)
・iPad mini(A17 Pro)
・iPad Air(第3世代)
・iPad Air(第4世代)
・iPad Air(第5世代)
・11インチiPad Air(M2)
・11インチiPad Air(M3)
・11インチiPad Air(M4)
・13インチiPad Air(M2)
・13インチiPad Air(M3)
・13インチiPad Air(M4)
・11インチiPad Pro(第1世代)
・11インチiPad Pro(第2世代)
・11インチiPad Pro(第3世代)
・11インチiPad Pro(第4世代)
・11インチiPad Pro(M4)
・11インチiPad Pro(M5)
・12.9インチiPad Pro(第3世代)
・12.9インチiPad Pro(第4世代)
・12.9インチiPad Pro(第5世代)
・12.9インチiPad Pro(第6世代)
・13インチiPad Pro(M4)
・13インチiPad Pro(M5)

更新は従来通り各製品本体のみでOTA(On-The-Air)によりダウンロードで行え、方法としては、「設定」→「一般」→「ソフトウェア・アップデート」から行え、単体でアップデートする場合のダウンロードサイズは手持ちのiPhone 15 Pro MaxでiOS 26.5からだと528.5MBとなっています。またiTunesをインストールしたWindowsおよびMacとUSB-Lightningケーブルで接続しても実施できます。なお、Appleが案内しているアップデートの内容およびセキュリティーコンテンツの修正は以下の通り。

iOS 26.6.1
このアップデートには、iPhone用のセキュリティ修正が含まれています。
Appleソフトウェアアップデートのセキュリティコンテンツについては、以下のWebサイトをご覧ください: https://support.apple.com/100100

iPadOS 26.6.1
このアップデートには、iPad用のセキュリティ修正が含まれています。
Appleソフトウェアアップデートのセキュリティコンテンツについては、以下のWebサイトをご覧ください: https://support.apple.com/100100

iOS 26.6.1 and iPadOS 26.6.1
Released August 17, 2026

– Audio
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: An app may be able to leak sensitive user information
 Description: A logic issue was addressed with improved checks.
 CVE-2026-65339: Meta Red Team X – Nik Tsytsarkin

– ImageIO
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing an image may lead to a denial-of-service
 Description: The issue was addressed with improved checks.
 CVE-2026-65347: Geonha Lee (@leegn4a)

– ImageIO
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing an image may lead to arbitrary code execution
 Description: An integer overflow was addressed with improved input validation.
 CVE-2026-65346: Meta Red Team X – Nik Tsytsarkin

– IOGPUFamily
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to memory corruption
 Description: The issue was addressed with improved memory handling.
 CVE-2026-64788: f00l (@PPPF00L) and 3ndy1(@_3ndy1) and Minghao Lin@Y1nkoc and 云散花折, Arjanit Isufi

– Kernel
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: A remote attacker may be able to cause unexpected system termination
 Description: A use after free issue was addressed with improved memory management.
 CVE-2026-65343: Drinor Selmanaj (Sentry), Surya Narayan Kushwaha

– Kernel
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: An app may be able to cause unexpected system termination or read kernel memory
 Description: An out-of-bounds read was addressed with improved input validation.
 CVE-2026-65349: an anonymous researcher

– Kernel
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
 Description: The issue was addressed with improved memory handling.
 CVE-2026-65330: Bhaswanth Chigurupati, Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

– Telephony
 Available for: iPhone 11 and later
 Impact: An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic
 Description: An authentication issue was addressed with improved state management.
 CVE-2026-65329: Bedran Karakoc, Tobias Funke, Jacopo Clark, Katharina Kohls of Ruhr University Bochum

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: An out-of-bounds access issue was addressed with improved bounds checking.
 WebKit Bugzilla: 317632
 CVE-2026-64784: Janggoon Lee of Out of Bounds, OpenAI Codex Security – Amy Burnett

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: The issue was addressed with improved memory handling.
 WebKit Bugzilla: 313452
 CVE-2026-43795: wwwlk
 WebKit Bugzilla: 318348
 CVE-2026-65338: OpenAI Codex Security – Amy Burnett

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to memory corruption
 Description: The issue was addressed with improved memory handling.
 WebKit Bugzilla: 318405
 CVE-2026-65341: Henock Habte

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: A memory corruption vulnerability was addressed with improved locking.
 WebKit Bugzilla: 321480
 CVE-2026-64782: Seonwook Kim, Shubham Chaskar, lattice, Josef Korbel

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: The issue was addressed with improved input validation.
 WebKit Bugzilla: 321484
 CVE-2026-64781: Thomas Guillem

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: This issue was addressed through improved state management.
 WebKit Bugzilla: 321517
 CVE-2026-65351: Niels Hofmans
 WebKit Bugzilla: 316996
 CVE-2026-65340: Claudio Bozzato and Francesco Benvenuto of Cisco Talos, Josef Korbel (Citadelo)
 WebKit Bugzilla: 317142
 CVE-2026-65337: OpenAI Codex Security – Amy Burnett
 WebKit Bugzilla: 317349
 CVE-2026-65336: Josef Korbel
 WebKit Bugzilla: 316723
 CVE-2026-65335: OpenAI Codex Security – Amy Burnett
 WebKit Bugzilla: 317603
 CVE-2026-65333: OpenAI Codex Security – Amy Burnett
 WebKit Bugzilla: 317450
 CVE-2026-65332: OpenAI Codex Security – Amy Burnett
 WebKit Bugzilla: 317611
 CVE-2026-65331: OpenAI Codex Security – Amy Burnett

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected process crash
 Description: A use-after-free issue was addressed with improved memory management.
 WebKit Bugzilla: 316347
 CVE-2026-64715: Hossein Lotfi (@hosselot) of TrendAI Zero Day Initiative

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: The issue was addressed with improved checks.
 WebKit Bugzilla: 316918
 CVE-2026-64780: OpenAI Codex Security – Amy Burnett

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: A memory corruption issue was addressed with improved state management.
 WebKit Bugzilla: 316791
 CVE-2026-65334: OpenAI Codex Security – Amy Burnett

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to memory corruption
 Description: A memory corruption issue was addressed with improved memory handling.
 WebKit Bugzilla: 317317
 CVE-2026-43794: Dung Do (@_piers2) of Calif.io

– WebKit
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected process termination
 Description: A use-after-free issue was addressed with improved memory management.
 WebKit Bugzilla: 313703
 CVE-2026-64787: 杉山 壮太, Shubham Chaskar

– WebKit History
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Visiting a maliciously crafted website may leak sensitive data
 Description: The issue was addressed with improved checks.
 WebKit Bugzilla: 315528
 CVE-2026-64778: Mohit Negi

– WebKit Storage
 Available for: iPhone 11 and later, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 8th generation and later, and iPad mini 5th generation and later
 Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
 Description: A memory corruption vulnerability was addressed with improved locking.
 WebKit Bugzilla: 321485
 CVE-2026-64779: Shubham Chaskar, Tommy DeVoss from Braze Security Team (@thedawgyg)

ドコモオンラインショップ
記事執筆:memn0ck

■関連リンク
エスマックス(S-MAX)
エスマックス(S-MAX) smaxjp on Twitter
S-MAX – Facebookページ
iOS 26 関連記事一覧 – S-MAX
iPadOS 26 関連記事一覧 – S-MAX
iOS 26 のアップデートについて – Apple サポート (日本)
iPadOS 26 のアップデートについて – Apple サポート (日本)
iOS 26.6.1およびiPadOS 26.6.1のセキュリティコンテンツについて – Apple サポート (日本)
Apple セキュリティアップデート – Apple サポート

コメント

タイトルとURLをコピーしました