# Apple patches CoreGraphics flaw linked to possible targeted attacks

_Published Monday, September 28, 2026 at 5:08 PM EDT · Security · Latest · Tier 2 — Notable_

![Apple patches CoreGraphics flaw linked to possible targeted attacks — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhO5I5gnKOqAs0ZCjgQnQirUHdSjRqGZRMp-Fioy684EzZWuQm72wSrCW1hWZEYlvvOXoCtkQyr3sB48AoZ71PM6tMCsz_AGZmEYZz8u2AbrH1gpjutU-mFtDQpuJcI_pKEG9q4-cZEo7T3Yp7hyphenhyphen4_MCZvloRnVKszE7rjTDUKZBaH1eQ47-K0fPno50T3S/s1700-nu-rw-lo-l85-e365/apple-0day.jpg)

Apple released updates for iOS, iPadOS and macOS to fix a CoreGraphics flaw that it says may have been used in targeted attacks.

The vulnerability, CVE-2026-86950, could allow code execution when a device processes a maliciously crafted file. Apple addressed the out-of-bounds write with improved bounds checking. The fixes are in iOS and iPadOS 26.7.1, macOS Tahoe 26.7.1 and macOS Sequoia 15.8.1. Apple said it was aware of a report involving an extremely sophisticated attack against specific people using iOS versions before iOS 27.

It did not establish whether the reported attempts succeeded.

## Sources

- [The Hacker News](https://thehackernews.com/2026/09/apple-patches-coregraphics-flaw.html)

---
Canonical: https://techandbusiness.org/newswire/00o5liuNupMRCdyTttJSNv
Published: 2026-09-28T21:08:28.279Z
Story chronology: 2026-09-28T19:18:01.000Z
Retrieved: 2026-09-28T23:01:09.841Z
Publisher: Tech & Business (techandbusiness.org)
