About the security content of macOS Sonoma 14.8.8

This document describes the security content of macOS Sonoma 14.8.8.

About Apple security updates

For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available. Recent releases are listed on the Apple security releases page.

Apple security documents reference vulnerabilities by CVE-ID when possible.

For more information about security, see the Apple Product Security page.

macOS Sonoma 14.8.8

Released July 27, 2026

Accounts

Available for: macOS Sonoma

Impact: An app may be able to gain root privileges

Description: A parsing issue in the handling of directory paths was addressed with improved path validation.

CVE-2026-43749: Adam Franke, Trung Nguyen (@everping) of CyStack, Ashish Kunwar

afpfs

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory

Description: A buffer overflow was addressed with improved bounds checking.

CVE-2026-64767: Dave G.

apache

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause a denial-of-service

Description: This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at cve.org.

CVE-2026-23918: Юлия Мерцалова

APFS

Available for: macOS Sonoma

Impact: A remote user may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64695: Peter Malone

App Store

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: This issue was addressed with improved checks.

CVE-2026-43801: Rahul Raj

Apple Account

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: A race condition was addressed with improved state handling.

CVE-2026-43781: Pinak Oza

Apple Account

Available for: macOS Sonoma

Impact: A malicious app may be able to break out of its sandbox

Description: An authorization issue was addressed with improved state management.

CVE-2026-64737: Robert Mindo

AppleRAID

Available for: macOS Sonoma

Impact: A local user may be able to read kernel memory

Description: A buffer overflow was addressed with improved bounds checking.

CVE-2026-43681: impost0r (ret2plt), David Ige - Beryllium Security

Assets

Available for: macOS Sonoma

Impact: A malicious application may be able to bypass Privacy preferences

Description: An authorization issue was addressed with improved state management.

CVE-2026-43672: 이재영

ATS

Available for: macOS Sonoma

Impact: An app may be able to read files outside of its sandbox

Description: A permissions issue was addressed by removing the vulnerable code.

CVE-2026-43763: Pavan Nallamothu, Jared Reyes

Audio

Available for: macOS Sonoma

Impact: An app may be able to break out of its sandbox

Description: An access issue was addressed with additional sandbox restrictions.

CVE-2026-64702: John Lussier

Audio

Available for: macOS Sonoma

Impact: An app may be able to cause a denial-of-service

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-64725: Seonung Park, ALTV!ST (altvi.st/)

AVEVideoEncoder

Available for: macOS Sonoma

Impact: An app may be able to execute arbitrary code with kernel privileges

Description: A buffer overflow was addressed with improved size validation.

CVE-2026-64747: Franco Belman at Blackwing Intelligence

AVEVideoEncoder

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-64762: Franco Belman at Blackwing Intelligence, Dun

BackgroundAssets

Available for: macOS Sonoma

Impact: An app may be able to delete files for which it does not have permission

Description: A permissions issue was addressed with improved validation.

CVE-2026-64707: YingQi Shi (@Mas0nShi) of DBAppSecurity's WeBin lab

BOM

Available for: macOS Sonoma

Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks

Description: The issue was addressed with improved checks.

CVE-2026-28849: Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs

cd9660

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or read kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64698: Richard Zana, Peter Malone, Nathaniel Oh (@calysteon), an anonymous researcher

Contacts

Available for: macOS Sonoma

Impact: Processing a maliciously crafted contact may leak sensitive data

Description: The issue was addressed with improved checks.

CVE-2026-64734: Daniel Williams

Control Center

Available for: macOS Sonoma

Impact: An app may be able to access user-sensitive data

Description: A logic issue was addressed with improved validation.

CVE-2026-43756: 이재영

Core Services

Available for: macOS Sonoma

Impact: An app may be able to gain root privileges

Description: A race condition was addressed with improved state handling.

CVE-2026-43693: Gergely Kalman (@gergely_kalman)

CoreAudio

Available for: macOS Sonoma

Impact: Processing a maliciously crafted audio file may corrupt process memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43673: Anonymous working with TrendAI Zero Day Initiative

CoreAudio

Available for: macOS Sonoma

Impact: Processing an audio stream in a maliciously crafted media file may terminate the process

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-43744: Mathis Mansière, an anonymous researcher

CoreAudio

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause unexpected system termination

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-43803: Rahul Raj

CoreMedia

Available for: macOS Sonoma

Impact: Processing a maliciously crafted video file may lead to unexpected app termination

Description: A memory corruption issue was addressed with improved memory handling.

CVE-2026-43711: James Duffy (@0x4A616D657344)

CoreServices

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may lead to unexpected app termination

Description: The issue was addressed with improved checks.

CVE-2026-28936: Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs

CoreUI

Available for: macOS Sonoma

Impact: Processing a maliciously crafted asset catalog may result in disclosure of process memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43738: Peter Malone

CoreVideo

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-43802: an anonymous researcher

Crash Reporter

Available for: macOS Sonoma

Impact: An app may be able to leak sensitive user information

Description: A privacy issue was addressed by removing sensitive data.

CVE-2026-64710: Matthew Schneider

CUPS

Available for: macOS Sonoma

Impact: A malicious app may be able to gain root privileges

Description: A permissions issue was addressed with additional restrictions.

CVE-2026-39875: XBreach.ai, Dallas Dubs, Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs, Aaron Grattafiori - NVIDIA AI Red Team

CUPS

Available for: macOS Sonoma

Impact: An app may be able to gain root privileges

Description: An injection issue was addressed with improved validation.

CVE-2026-43698: Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs

curl

Available for: macOS Sonoma

Impact: Authentication credentials may be sent to a server on another origin

Description: This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at cve.org.

CVE-2026-3784

CVE-2026-3783

Data Detectors UI

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: An authorization issue was addressed with improved state management.

CVE-2026-43758: HvxyZLF

DesktopServices

Available for: macOS Sonoma

Impact: An app may bypass Gatekeeper checks

Description: A file quarantine bypass was addressed with additional checks.

CVE-2026-64708: Lance Cain - Offensive Security Engineer, SpecterOps Inc.

Disk Images

Available for: macOS Sonoma

Impact: An app may be able to elevate privileges

Description: A race condition was addressed with improved state handling.

CVE-2026-28926: Jonathan Bar Or (@yo_yo_yo_jbo)

Disk Images

Available for: macOS Sonoma

Impact: Parsing a maliciously crafted file may lead to an unexpected app termination

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-43747: Anthony Laou Hine Tsuei (@anarcheuz)

Disk Images

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An integer overflow was addressed with improved input validation.

CVE-2026-64694: Gil Portnoy & Henry

Disk Images

Available for: macOS Sonoma

Impact: An app may be able to bypass network restrictions

Description: A permissions issue was addressed with additional sandbox restrictions.

CVE-2026-28945: Ayaan Ahmad

Disk Images

Available for: macOS Sonoma

Impact: An app may be able to disclose kernel memory

Description: The issue was addressed with improved bounds checks.

CVE-2026-64776: Hyunwoo Kim (@v4bel)

DriverKit

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.

CVE-2026-43793: erdene-och Byambabayar

DriverKit

Available for: macOS Sonoma

Impact: An attacker with physical access to a locked device may be able to view sensitive user information

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-43753: Niels Hofmans

Foundation

Available for: macOS Sonoma

Impact: A malicious app may be able to access protected user data

Description: The issue was addressed with improved input sanitization.

CVE-2026-43714: an anonymous researcher

Game Center

Available for: macOS Sonoma

Impact: A malicious app may be able to break out of its sandbox

Description: A parsing issue in the handling of directory paths was addressed with improved path validation.

CVE-2026-64740: Manuel Fernandez (Stackhopper Security)

Game Center

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: This issue was addressed with improved data protection.

CVE-2026-43796: Stanislav Jelezoglo, Ilya Andr (andrd3v) of Positive Technologies

Heimdal

Available for: macOS Sonoma

Impact: An app may be able to cause a denial-of-service

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-64692: Redon Gashi

HFS

Available for: macOS Sonoma

Impact: A remote user may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43682: Trung Nguyen (@everping) of CyStack, Peter Malone, Nicolas Rabrenovic, Dave G., Atul R V & Ashmit Sharma

HFS

Available for: macOS Sonoma

Impact: Processing a maliciously crafted image may lead to arbitrary code execution

Description: A buffer overflow was addressed with improved bounds checking.

CVE-2026-28981: Hcamael and 章鱼哥@aipy (aipyaipy.com), Aswin Kumar Gokulakannan, Surya Narayan Kushwaha, Dun

HFS

Available for: macOS Sonoma

Impact: Mounting a maliciously crafted disk image may cause unexpected system termination or corrupt kernel memory

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-43773: Surya Narayan Kushwaha, Richard Zana, Peter Malone, Hyunwoo Kim (@v4bel), Cem Onat Karagun

HFS

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: The issue was addressed with improved memory handling.

CVE-2026-43767: Hyunwoo Kim (@v4bel)

HFS

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64697: Peter Malone

HFS

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An integer overflow was addressed with improved input validation.

CVE-2026-43764: Tristan Madani (@TristanInSec) from Talence Security

HFS

Available for: macOS Sonoma

Impact: An attacker may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43710: Peter Malone

Icons

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: An access issue was addressed with additional sandbox restrictions.

CVE-2025-43325: an anonymous researcher

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted image may corrupt process memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64716: Peter Malone, Jonathan Alush-Aben, Arni Hardarson

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted texture may lead to unexpected app termination

Description: An integer overflow was addressed with improved input validation.

CVE-2026-43780: Michael DePlante (@izobashi) of TrendAI Zero Day Initiative

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted image may lead to arbitrary code execution

Description: An integer overflow was addressed with improved input validation.

CVE-2026-43818: an anonymous researcher

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted image may corrupt process memory

Description: A buffer overflow issue was addressed with improved memory handling.

CVE-2026-43661: Gandalf4a of PKU-ICODE, Anton Pakhunov, an anonymous researcher

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may lead to a denial-of-service

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-64754: Rahul Raj, PETOWORKS의 Bugeun Choi (@Bugeun)

ImageIO

Available for: macOS Sonoma

Impact: Processing a maliciously crafted image may lead to a denial-of-service

Description: A type confusion issue was addressed with improved checks.

CVE-2026-64693: Geonha Lee (@leegn4a)

IOKit

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or write kernel memory

Description: A race condition was addressed with improved state handling.

CVE-2026-43805: 이재영

IOSkywalkFamily

Available for: macOS Sonoma

Impact: An app may be able to disclose kernel memory

Description: A memory corruption issue was addressed with improved memory handling.

CVE-2026-39877: Richard Zana, Dhiyanesh Selvaraj (@redroot97)

Kernel

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: This issue was addressed with improved checks.

CVE-2026-43782: Igor Ushakov

Kernel

Available for: macOS Sonoma

Impact: An app may be able to disclose kernel memory

Description: An information leakage was addressed with additional validation.

CVE-2026-64744: Ryan Hileman via Xint Code (xint.io)

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: A memory initialization issue was addressed with improved memory handling.

CVE-2026-64775: Ryan Hileman via Xint Code (xint.io)

Kernel

Available for: macOS Sonoma

Impact: A remote user may be able to cause unexpected system termination or corrupt kernel memory

Description: A race condition was addressed with improved locking.

CVE-2026-28982: Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd., Adam Doupé of ASU SEFCOM

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or corrupt kernel memory

Description: A use after free issue was addressed with improved memory management.

CVE-2026-43778: f0r of MurphySec, Mahmoud Abdelmoniem, Feng Xue and XGPT of ThreatBook, Wang Yu, Nicolas Rabrenovic, Lyutoon, Hiroki Imai (LAC Co., Ltd.), Fábio Luís @scanpt, DARKNAVY (@DarkNavyOrg), an anonymous researcher

Kernel

Available for: macOS Sonoma

Impact: A remote attacker may be able to bypass network filters

Description: An inconsistent user interface issue was addressed with improved state management.

CVE-2026-64735: Gor Aleksanyan

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: A use after free issue was addressed with improved memory management.

CVE-2026-43822: Michal Kosiorek, Eddy Tsalolikhin

CVE-2026-64700: Asjid Kalam (@odinshell)

CVE-2026-43799: Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: A remote user may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43810: Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or write kernel memory

Description: The issue was addressed with improved input sanitization.

CVE-2026-43724: impost0r (ret2plt), Hyunwoo Kim (@v4bel)

Kernel

Available for: macOS Sonoma

Impact: An app may be able to leak sensitive kernel state

Description: The issue was addressed with improved input sanitization.

CVE-2026-43722: Hyunwoo Kim (@v4bel), Feng Xue and XGPT of ThreatBook

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-43809: Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

CVE-2026-43757: Wang Yu, Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: An integer overflow was addressed with improved input validation.

CVE-2026-43769: Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: An app may be able to leak sensitive kernel state

Description: This issue was addressed with improved redaction of sensitive information.

CVE-2026-43754: Ernesto Martínez García, Calif Research

Kernel

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: A logic issue was addressed with improved checks.

CVE-2026-64723: Ji'an Zhou, Mingxuan Yang, Ye Zhang

Kernel

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or corrupt kernel memory

Description: This issue was addressed with improved input validation.

CVE-2026-39868: Ye Zhang (@VAR10CK) of Baidu Security, Vladislav Shevchenko (Positive Technologies), Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: An app may be able to disclose kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64709: Pasquale Scola, Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.

Kernel

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: This issue was addressed through improved state management.

CVE-2026-64721: Lukas Gerlach

LaunchServices

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: An information disclosure issue was addressed with improved privacy controls.

CVE-2026-20672: Kirin (@Pwnrin) and LFY (@secsys) from Fudan University

LaunchServices

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause a denial of service

Description: A type confusion issue was addressed with improved checks.

CVE-2026-28983: Ruslan Dautov

libarchive

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may result in disclosure of process memory

Description: This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at cve.org.

CVE-2026-4424

libarchive

Available for: macOS Sonoma

Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks

Description: A file quarantine bypass was addressed with additional checks.

CVE-2026-28900: Prathamesh Walunj

libc

Available for: macOS Sonoma

Impact: A malicious app may be able to break out of its sandbox

Description: An integer overflow was addressed with improved input validation.

CVE-2026-28973: an anonymous researcher

Libnotify

Available for: macOS Sonoma

Impact: An attacker may be able to cause unexpected app termination

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-64739: Feng Xue and XGPT of ThreatBook, Dun

libxslt

Available for: macOS Sonoma

Impact: Processing maliciously crafted web content may lead to an unexpected process crash

Description: The issue was addressed with improved memory handling.

CVE-2026-43703: Tristan Madani (@TristanInSec) from Talence Security

libxslt

Available for: macOS Sonoma

Impact: Processing maliciously crafted web content may lead to an unexpected process crash

Description: A double free issue was addressed with improved memory management.

CVE-2026-43706: Tristan Madani (@TristanInSec) from Talence Security

LoginWindow

Available for: macOS Sonoma

Impact: An attacker with physical access to a locked device may be able to view sensitive user information

Description: An authorization issue was addressed with improved state management.

CVE-2026-43766: Amy (amys.website)

Maps

Available for: macOS Sonoma

Impact: A malicious app may be able to break out of its sandbox

Description: A permissions issue was addressed with additional restrictions.

CVE-2026-64738: Robert Mindo, Nathaniel Oh (@calysteon)

mDNSResponder

Available for: macOS Sonoma

Impact: An attacker on the local network may be able to cause a denial-of-service

Description: The issue was addressed with improved memory handling.

CVE-2026-64724: Daisuke Hatakeyama (@SYZD Research)

MediaRemote

Available for: macOS Sonoma

Impact: An app may be able to gain root privileges

Description: A path handling issue was addressed with improved validation.

CVE-2026-43723: Richard Zana, Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs

Metal

Available for: macOS Sonoma

Impact: A malicious app may be able to corrupt memory of a system process

Description: The issue was addressed with improved memory handling.

CVE-2026-28911: yk lin of @pixiepointsec

MobileAccessoryUpdater

Available for: macOS Sonoma

Impact: A malicious accessory may be able to cause unexpected app termination

Description: A buffer overflow was addressed with improved bounds checking.

CVE-2026-43807: Tristan Madani (@TristanInSec) from Talence Security

Model I/O

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause unexpected application termination or heap corruption

Description: An integer overflow was addressed with improved input validation.

CVE-2026-64774: stratan (@5tratan)

Model I/O

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause unexpected application termination or heap corruption

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-64770: stratan (@5tratan)

CVE-2026-64769: stratan (@5tratan)

Model I/O

Available for: macOS Sonoma

Impact: A remote attacker may cause an unexpected app termination

Description: An out-of-bounds read issue was addressed with improved input validation.

CVE-2026-64768: stratan (@5tratan)

Net-SNMP

Available for: macOS Sonoma

Impact: An app may be able to cause a denial-of-service

Description: A stack overflow was addressed with improved input validation.

CVE-2026-43771: Robert Tran

NetFSFramework

Available for: macOS Sonoma

Impact: An app may be able to break out of its sandbox

Description: A path traversal issue was addressed with improved input validation.

CVE-2026-43772: Mickey Jin (@patch1t)

Network Extensions

Available for: macOS Sonoma

Impact: An attacker with physical access to a locked device may be able to view sensitive user information

Description: This issue was addressed with improved checks.

CVE-2026-28961: Dan Raviv

NSColorPanel

Available for: macOS Sonoma

Impact: An app may be able to leak sensitive user information

Description: This issue was addressed with additional entitlement checks.

CVE-2026-64711: Koh M. Nakagawa (@tsunek0h) of FFRI Security, Inc.

PackageKit

Available for: macOS Sonoma

Impact: An app may be able to modify protected parts of the file system

Description: This issue was addressed with improved handling of symlinks.

CVE-2026-43765: Mickey Jin (@patch1t)

ppp

Available for: macOS Sonoma

Impact: An attacker may be able to cause unexpected system termination or read kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-28896: Dave G.

quarantine

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination or write kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-43694: Hcamael and 章鱼哥@aipy (aipyaipy.com), JC Alvarado of Stripe, Jacob Hazak

Remote Management

Available for: macOS Sonoma

Impact: A malicious app may be able to gain root privileges

Description: A permissions issue was addressed with additional restrictions.

CVE-2026-39874: @pixiepointsec

SceneKit

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution

Description: An out-of-bounds write issue was addressed with improved bounds checking.

CVE-2026-64764: stratan (@5tratan)

SceneKit

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution

Description: An out-of-bounds write issue was addressed by removing the vulnerable code.

CVE-2026-64763: stratan (@5tratan)

SceneKit

Available for: macOS Sonoma

Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution

Description: An integer overflow was addressed with improved input validation.

CVE-2026-64766: stratan (@5tratan)

CVE-2026-64765: stratan (@5tratan)

Screen Sharing Server

Available for: macOS Sonoma

Impact: An app may be able to intercept network connections intended for another process

Description: A logic issue was addressed with improved restrictions.

CVE-2026-43779: Dave G., Asaf Cohen

Screen Sharing Server

Available for: macOS Sonoma

Impact: A remote attacker may be able to cause a denial of service

Description: This issue was addressed with improved input validation.

CVE-2026-43777: Junming C.(Chapoly1305)

Screen Sharing Server

Available for: macOS Sonoma

Impact: A local attacker may be able to determine the legacy VNC password configured for Screen Sharing

Description: This issue was addressed with additional entitlement checks.

CVE-2026-43665: Ayaan Ahmad

Screen Sharing Server

Available for: macOS Sonoma

Impact: An app may be able to access user-sensitive data

Description: An access issue was addressed with improved access restrictions.

CVE-2026-43760: wdszzml and Atuin Automated Vulnerability Discovery Engine, Alfredo Pesoli (@__rev) of Bynar.io

SecurityAgent

Available for: macOS Sonoma

Impact: An app may be able to gain root privileges

Description: A race condition was addressed with improved state management.

CVE-2026-43755: Mickey Jin (@patch1t)

SMB

Available for: macOS Sonoma

Impact: Connecting to a malicious SMB server may lead to unexpected system termination

Description: The issue was addressed with improved memory handling.

CVE-2026-39873: Peter Malone

SMB

Available for: macOS Sonoma

Impact: A remote user may be able to cause unexpected system termination or corrupt kernel memory

Description: The issue was addressed with improved memory handling.

CVE-2026-64696: Feng Xue and XGPT of ThreatBook, Peter Malone

SMB

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: A type confusion issue was addressed with improved memory handling.

CVE-2026-64704: Claudio Bozzato and Francesco Benvenuto of Cisco Talos, Aswin Kumar Gokulakannan, Peter Malone, Kitten Food, Calif.io in collaboration with Claude and Anthropic Research

Spotlight

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: An out-of-bounds read was addressed with improved bounds checking.

CVE-2026-43774: Csaba Fitzl (@theevilbit) of Iru

StorageKit

Available for: macOS Sonoma

Impact: An app may be able to access sensitive user data

Description: A race condition was addressed with additional validation.

CVE-2026-43770: Tien-Chih Lin of CyCraft Technology

udf

Available for: macOS Sonoma

Impact: An app may be able to cause unexpected system termination

Description: The issue was addressed with improved memory handling.

CVE-2026-43768: Hyunwoo Kim (@v4bel)

WebDAV

Available for: macOS Sonoma

Impact: An app may be able to cause a denial-of-service

Description: A use after free issue was addressed with improved memory management.

CVE-2026-64703: Bruce Dang of Calif.io in collaboration with Claude and Anthropic Research

WebDAV

Available for: macOS Sonoma

Impact: An app may be able to disclose kernel memory

Description: A memory initialization issue was addressed with improved memory handling.

CVE-2026-64699: Bruce Dang of Calif.io

Wi‑Fi

Available for: macOS Sonoma

Impact: An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges

Description: A buffer overflow was addressed with improved bounds checking.

CVE-2026-43750: an anonymous researcher

xar

Available for: macOS Sonoma

Impact: An app may be able to cause a denial of service

Description: A logic issue existed resulting in memory corruption. This was addressed with improved state management.

CVE-2026-28932: Mathis Mansière

zip

Available for: macOS Sonoma

Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks

Description: A logic issue was addressed with improved file handling.

CVE-2026-28914: Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs (nosebeard.co)

Additional recognition

Audio

We would like to acknowledge Niels Hofmans for their assistance.

copyfile

We would like to acknowledge Keisuke Hosoda for their assistance.

CoreMedia

We would like to acknowledge yaohway for their assistance.

Disk Images

We would like to acknowledge Jordy Zomer (@pwningsystems), Phillip Groves, Richard Zana for their assistance.

Kernel

We would like to acknowledge Billy Jheng Bing Jhong and Pan Zhenpeng (@Peterpan0927) of STAR Labs SG Pte. Ltd., James Duffy ( @0x4A616D657344 ), Mathis Mansière, Tristan Rousseau, Yeojin Kim, YingMuo (@YingMuo) of DEVCORE Research Team for their assistance.

libxslt

We would like to acknowledge Kubilay Berk Alkan for their assistance.

mDNSResponder

We would like to acknowledge Cem Onat Karagun, He Wei (ギカク), Jex Amro, 章鱼哥 (@aipy) of aipyaipy.com for their assistance.

PluginKit

We would like to acknowledge Asaf Cohen, Ashish Kunwar for their assistance.

Printing UIKit

We would like to acknowledge Jacolon Walker ( @call_eax ) for their assistance.

ReplayKit

We would like to acknowledge an anonymous researcher for their assistance.

System Settings

We would like to acknowledge Masaki Moriguchi for their assistance.

Time Machine

We would like to acknowledge Andreas Jaegersberger & Ro Achterberg of Nosebeard Labs for their assistance.

Information about products not manufactured by Apple, or independent websites not controlled or tested by Apple, is provided without recommendation or endorsement. Apple assumes no responsibility with regard to the selection, performance, or use of third-party websites or products. Apple makes no representations regarding third-party website accuracy or reliability. Contact the vendor for additional information.

Data di pubblicazione: