Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 30 Jul 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Arbitrary Code Execution via Buffer Overflow in macOS Image Processing |
Tue, 28 Jul 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-120 | |
| Metrics |
cvssV3_1
|
Tue, 28 Jul 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos |
|
| Vendors & Products |
Apple
Apple macos |
Mon, 27 Jul 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Processing a maliciously crafted image may lead to arbitrary code execution. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-07-29T03:55:27.560Z
Reserved: 2026-03-03T16:36:03.993Z
Link: CVE-2026-28981
Updated: 2026-07-28T14:14:37.387Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-30T01:15:05Z
-
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')