EIP-2026-104560

PRE-CVE

Apple Mac OSX 10.6.5 / iOS 4.3.3 Mail - Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-104560. PoCs published by shebang42.

AI-analyzed exploit summary This Python script exploits a denial-of-service vulnerability in Apple Mail.app by crafting a malicious email with an excessive number of MIME attachments (2040), causing the application to crash. The exploit targets a bug in the handling of multipart MIME messages, affecting Mac OS X and iOS versions up to 10.7.2 and 4.3.3, respectively.

Description

Apple Mac OSX 10.6.5 / iOS 4.3.3 Mail - Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by shebang42 · pythondososx
https://www.exploit-db.com/exploits/36271

This Python script exploits a denial-of-service vulnerability in Apple Mail.app by crafting a malicious email with an excessive number of MIME attachments (2040), causing the application to crash. The exploit targets a bug in the handling of multipart MIME messages, affecting Mac OS X and iOS versions up to 10.7.2 and 4.3.3, respectively.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Apple Mail.app (Mac OS X up to 10.7.2, iOS up to 4.3.3)
No auth needed
Prerequisites: Access to an SMTP relay server · Target email address
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026