CVE-2026-28858 PUBLISHED

Assigner: apple
Reserved: 03.03.2026 Published: 25.03.2026 Updated: 25.03.2026

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.4 and iPadOS 26.4. A remote user may be able to cause unexpected system termination or corrupt kernel memory.

Product Status

Vendor Apple
Product iOS and iPadOS
Versions
  • affected from 0 to 26.4 (excl.)

References

Problem Types

  • A remote user may be able to cause unexpected system termination or corrupt kernel memory