Improper input validation in macOS - CVE-2026-28841
Published: March 25, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper input validation in IOGraphics when handling graphics operations. A local user can execute a specially crafted application to cause a denial of service.
Exploitation requires local access and the ability to run a malicious application.