#VU124389 Improper input validation in macOS - CVE-2026-28841
Published: March 25, 2026
macOS
Apple Inc.
Description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper input validation in IOGraphics when handling graphics operations. A local user can execute a specially crafted application to cause a denial of service.
Exploitation requires local access and the ability to run a malicious application.