Executive brief
A vulnerability in macOS could allow a malicious image file to corrupt a computer's memory. This occurs when the system processes a specially crafted image, potentially leading to application crashes or unauthorized code execution. Users are advised to update to the latest versions of macOS to protect their data and system stability.
Technical details
A memory corruption vulnerability exists in macOS due to improper memory handling when processing image files. An attacker can exploit this by tricking a user into opening or previewing a maliciously crafted image, which may lead to process memory corruption or unexpected application termination. The root cause was addressed by Apple through improved memory handling and input validation. The vulnerability is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, and macOS Tahoe 26.5.
Affected products
- Apple macOS Sequoia Before 15.7.7
- Apple macOS Sonoma Before 14.8.7
- Apple macOS Tahoe Before 26.5
Timeline
- 2026-05-11: disclosed
- 2026-05-11: patched
- 2026-05-11: advisory