What is CVE-2026-28973?
CVE-2026-28973 is an integer overflow vulnerability in Apple operating systems that was addressed with improved input validation. A malicious app may be able to break out of its sandbox, and the issue is fixed in iOS 26.6, iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, and watchOS 26.6.
Azərbaycanca: CVE-2026-28973 iOS, iPadOS, macOS ve watchOS əməliyyat sistemlərində aşkar edilmiş tam ədəd daşması (integer overflow) zəifliyidir. Zərərli bir tətbiq bu boşluqdan istifadə edərək sandbox mühitindən çıxa bilər. Bu problem iOS 26.6, iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6 və watchOS 26.6 versiyalarında aradan qaldırılıb.
Related CVEs
link basis: shared vendor: Apple
FAQ2
Which Apple operating systems are affected by CVE-2026-28973?
This integer overflow vulnerability is found in iOS, iPadOS, macOS (including macOS Sequoia, macOS Sonoma, macOS Tahoe) and watchOS operating systems.
What can happen if CVE-2026-28973 is successfully exploited?
A malicious app may be able to break out of its sandbox.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.