What is CVE-2026-28981?
This vulnerability in macOS allows arbitrary code execution via a buffer overflow when processing a maliciously crafted image. The issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6, and users are strongly advised to apply these updates immediately.
Azərbaycanca: MacOS əməliyyat sistemində aşkarlanan bu boşluq, xüsusi hazırlanmış şəkil faylının işlənməsi zamanı buffer overflow nəticəsində ixtiyari kod icrasına imkan verir. Zəiflik macOS Sequoia 15.7.8, macOS Sonoma 14.8.8 və macOS Tahoe 26.6 versiyalarında aradan qaldırılıb, istifadəçilərə dərhal göstərilən yeniləmələri tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Apple
FAQ2
In which macOS versions is CVE-2026-28981 fixed?
The vulnerability is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6.
What mechanism allows arbitrary code execution in CVE-2026-28981?
A buffer overflow occurring when processing a maliciously crafted image allows arbitrary code execution.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.