CVE-2026-28918
בינונית 6.5
תיאור (מקור, אנגלית)
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Parsing a maliciously crafted file may lead to an unexpected app termination.
מדדים
- CVSS 3.1
-
6.5 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-2/8/2026
- CWE
- CWE-125, CWE-787
מוצרים מושפעים
apple: ipados; apple: iphone os; apple: macos; apple: tvos; apple: visionos; apple: watchos
קישורים
- https://support.apple.com/en-us/127110 Release NotesVendor Advisory
- https://support.apple.com/en-us/127115 Release NotesVendor Advisory
- https://support.apple.com/en-us/127118 Release NotesVendor Advisory
- https://support.apple.com/en-us/127119 Release NotesVendor Advisory
- https://support.apple.com/en-us/127120 Release NotesVendor Advisory