Memory Corruption Vulnerability in Apple iOS, iPadOS, and macOS Products
CVE-2026-28992

4.7MEDIUM

Key Information:

Vendor

Apple

Vendor
CVE Published:
11 May 2026

What is CVE-2026-28992?

A memory corruption vulnerability has been identified in various Apple products, allowing an attacker to potentially induce unexpected termination of applications. Apple has implemented improvements in locking mechanisms to address this issue in the latest updates. Users are encouraged to update to the patched versions to ensure optimal security and application stability.

Affected Version(s)

iOS and iPadOS 0 < 18.7.9

iOS and iPadOS 0 < 26.5

macOS 0 < 14.8.7

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.