TROYANOSYVIRUS
Volver a CVEs

CVE-2026-20639

HIGH
7.5

Descripcion

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.3. Processing a maliciously crafted string may lead to heap corruption.

Detalles CVE

Puntuacion CVSS v3.17.5
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado3/25/2026
Ultima modificacion3/25/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

apple:macos

Debilidades (CWE)

CWE-190

Referencias

https://support.apple.com/en-us/126348(product-security@apple.com)
https://support.apple.com/en-us/126795(product-security@apple.com)
https://support.apple.com/en-us/126796(product-security@apple.com)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.