Skip to content
AppleCVE-2026-43728

Apple macOS: race condition

High7.5CVE-2026-43728 · Published Jul 27, 2026 · updated Jul 29, 2026

This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26.6. An attacker may be able to modify the state of the Keychain.

Apple advisory

Affected versions

PackageAffectedFixed in
macOS
Product
< 26.626.6
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Severity from
CISA (its enrichment of the CVE record)
Weakness
CWE-362

More Apple advisories

All Apple
Advisory
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: buffer overflow
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: integer overflow
Critical9.8Jul 27
A memory initialization issue was addressed with improved memory handling
Critical9.8Jul 27

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.