Junglewise Threat Intelligence

CVE-2026-28911: Apple macOS memory corruption in system process

CVE-2026-28911 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Tahoe. Vendors: Apple.

Executive brief

A security vulnerability in macOS could allow a malicious application to corrupt the memory of critical system processes. This could lead to system instability or allow the malicious app to gain unauthorized control over the operating system. Users should update to the latest versions of macOS Sonoma or macOS Tahoe to resolve this issue.

Technical details

A memory corruption vulnerability exists in macOS system processes due to improper memory handling. A local attacker can exploit this by running a malicious application designed to trigger the corruption, potentially leading to arbitrary code execution with system-level privileges. The vulnerability was addressed by Apple through improved memory management logic. Affected versions include macOS Sonoma prior to 14.8.8 and macOS Tahoe prior to 26.6.

Affected products

  • Apple macOS Sonoma before 14.8.8
  • Apple macOS Tahoe before 26.6

Timeline

  • 2026-07-27: advisory
  • 2026-07-27: patched

References

Related threats