CVE-2026-43747

Summary

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Parsing a maliciously crafted file may lead to an unexpected app termination.

Affected Software

VendorProductVersion RangeStatus
ApplemacOS0 < 14.8.8affected
ApplemacOS0 < 15.7.8affected
ApplemacOS0 < 26.6affected

Weaknesses

  • Parsing a maliciously crafted file may lead to an unexpected app termination

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References